libevtx
A library to access and parse Windows XML Event Log (EVTX) format, useful for digital forensics and incident response.
GVfs is a userspace virtual filesystem implementation for GIO (a library available in GLib). It comes with a set of backends, including trash support, SFTP, SMB, HTTP, DAV, and many others. GVfs also contains modules for GIO that implement volume monitors and persistent metadata storage. There is also FUSE support that provides limited access to the GVfs filesystems for applications not using GIO.
A library to access and parse Windows XML Event Log (EVTX) format, useful for digital forensics and incident response.
WinSearchDBAnalyzer can parse and recover records in Windows.edb, providing detailed insights into various data types.
XMLStarlet offers a suite of command line utilities for manipulating and querying XML documents.
MFT and USN parser for direct extraction in filesystem timeline format with YARA rule support.
A tool for creating compact Linux memory dumps compatible with popular debugging tools.
Accessing databases stored on a machine by the Chrome browser and dumping URLs found.