iOS Logs, Events, And Plists Parser is a forensic tool designed to analyze iOS and iPadOS devices running versions 11 through 17. The tool processes data from compressed .tar/.zip files, decompressed directories, or iTunes/Finder backup folders to extract: - Mobile installation logs - iOS 12+ notifications - Build information including iOS version details - Wireless cellular service information (IMEI, device numbers) - Screen icons arrangement and ordering - Application state database correlations - Device connection history with user and computer names The application requires Python 3.10-3.12 and can be compiled into standalone executables for Windows and macOS systems. It offers both command-line and graphical user interfaces for forensic analysis operations.
FEATURES
SIMILAR TOOLS
A tool that uses Plaso to parse forensic artifacts and disk images, creating custom reports for easier analysis.
A next-generation crawling and spidering framework for extracting data from websites
A digital forensics tool that provides read-only access to file-system objects from various storage media types and file formats.
A comprehensive guide to incident response and computer forensics, covering the entire lifecycle of incident response and remediation.
A collection of Mac OS X and iOS forensics resources with a focus on artifact collection and collaboration.
Collects and organizes Linux OS data for detailed analysis and incident response.
A DFVFS backed viewer project with a WxPython GUI, aiming to enhance file extraction and viewing capabilities.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.