RegRippy Logo

RegRippy

0
Free
Updated 11 March 2025
Visit Website

RegRippy is a framework for reading and extracting useful forensics data from Windows registry hives, developed in modern Python 3 as an alternative to RegRipper. It utilizes William Ballenthin's python-registry to access the raw registry hives, aiming to provide a framework for developing plugins in an incident response scenario.

FEATURES

SIMILAR TOOLS

mac_apt is a versatile DFIR tool for processing Mac and iOS images, offering extensive artifact extraction capabilities and cross-platform support.

A library to access and parse OLE 2 Compound File (OLECF) format files.

A PowerShell-based incident response and live forensic data acquisition tool for Windows hosts.

A forensics tool for tracking USB device artifacts on Linux machines.

MalConfScan is a Volatility plugin for extracting configuration data of known malware and analyzing memory images.

Remote Acquisition Tool

A script for extracting common Windows artifacts from source images and VSCs with detailed dependencies and usage instructions.

OSINTLeak is a tool for discovering and analyzing leaked sensitive information across various online sources to identify potential security risks.

A software utility with forensic tools for smartphones, offering powerful data extraction and decoding capabilities.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

VAT: NL005301434B12

Copyright © 2025 - All rights reserved