How this analysis was created: This summary and feature list were written by an AI model that read the project's README and public documentation pages. Each feature links to the documentation it came from; stars, license and language come straight from the GitHub API. The model does not read the source code, and the analysis is refreshed when the project is re-analysed. Learn more on our About page.
IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.
Forensics acquisition framework designed to be extensible and secure
DFF (Digital Forensics Framework) is a Forensics Framework coming with command line and graphical interfaces. DFF can be used to investigate hard drives and volatile memory and create reports about user and system activities.
AIFT is a GUI, CLI, REST API, and MCP tool that helps DFIR analysts get oriented quickly. Point it at disk images, VM images, forensic archives, or triage packages; AIFT discovers what can be opened, parses artifacts with Dissect, and uses AI to turn parsed data into concrete leads and gaps for the investigator to verify.
The main features of flipforensics/aift are: Forensic Frameworks.
Open-source alternatives to flipforensics/aift include: arxsys/dff — DFF (Digital Forensics Framework) is a Forensics Framework coming with command line and graphical interfaces. DFF can… certtools/intelmq — IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing… coinbase/dexter — Forensics acquisition framework designed to be extensible and secure. dfirkuiper/kuiper — Digital Forensics Investigation Platform. fox-it/dissect — Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse… google/turbinia.