Visit Website

Hayabusa is a Windows event log fast forensics timeline generator and threat hunting tool created by the Yamato Security group in Japan. It is written in Rust, supports multi-threading for speed, and offers Sigma-compatible detection rules in YML format for easy customization and extensibility. It can be used for live analysis on single systems, offline analysis on multiple systems, or enterprise-wide threat hunting with Velociraptor, providing a consolidated CSV timeline output for analysis in various tools like LibreOffice, Timeline Explorer, Elastic Stack, and Timesketch.

FEATURES

ALTERNATIVES

A bash script for automating Linux swap analysis for post-exploitation or forensics purposes.

A python module for orchestrating content acquisitions and analysis via Amazon SSM.

Analyzing WiFiConfigStore.xml file for digital forensics on Android devices.

A library and tools to access and manipulate VMware Virtual Disk (VMDK) files.

Toolkit for performing acquisitions on iOS devices with logical and filesystem acquisition support.

Python script to parse macOS MRU plist files into human-friendly format

Diffy is a digital forensics and incident response (DFIR) tool developed by Netflix's Security Intelligence and Response Team (SIRT) for scoping compromises across cloud instances.

Modern digital forensics and incident response platform with comprehensive tools.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved