Penguin OS Forensic (or Flight) Recorder (POFR) Logo

Penguin OS Forensic (or Flight) Recorder (POFR)

0
Free
Visit Website

The Penguin OS Forensic (or Flight) Recorder (POFR) collects, stores, and organizes process execution, file access, network/socket endpoint creation, and other data from Linux Operating Systems for detailed analysis, aiding in incident response, threat detection, and compliance with standards like PCI-DSS and HIPAA.

FEATURES

ALTERNATIVES

Turbinia is an open-source framework for automating the running of common forensic processing tools to help with processing evidence in the Cloud.

Customizable live OS constructor tool for remote forensics and incident response.

A command line utility for managing volume shadow copies with capabilities for evasion, persistence, and file extraction.

A collection of tools for extracting and analyzing information from .git repositories

Tool for analyzing Windows Recycle Bin INFO2 file

A DFVFS backed viewer project with a WxPython GUI, aiming to enhance file extraction and viewing capabilities.

A powerful reverse engineering framework

Analyzing WiFiConfigStore.xml file for digital forensics on Android devices.

PINNED