ics_mem_collect Logo

ics_mem_collect

0
Free
Visit Website

For many industrial control system devices, there is not a simple solution for programmatically accessing memory. Without an API, an incident responder or digital forensics analyst may be required to manually probe memory looking for anomalies or malicious activity. This project is intended to develop APIs that allow an analyst to adapt pre-existing tools or rapidly build new tools in order to target these devices. Current Devices: GE D20MX Future Work: JTAG Interface

FEATURES

ALTERNATIVES

Review of various MFT parsers used in digital forensics for analyzing NTFS file systems.

Universal hexadecimal editor for computer forensics, data recovery, and IT security.

A forensic tool to find hidden processes and TCP/UDP ports by rootkits or other hidden techniques.

GUI-based memory forensic capture tool for cyber forensics and cyber crime investigation.

mac_apt is a versatile DFIR tool for processing Mac and iOS images, offering extensive artifact extraction capabilities and cross-platform support.

A tool for parsing and extracting information from the Master File Table of NTFS file systems.

Exterro is a data risk management platform that optimizes e-discovery, digital forensics, and cybersecurity compliance operations.

A tool for analyzing pentest screenshots using a convolutional neural network

PINNED