ShadowCopy Analyzer is a tool designed for cybersecurity researchers to analyze and utilize the ShadowCopy technology, which allows the creation of backup snapshots of computer volumes or files, aiding in file recovery, ransomware mitigation, and system restoration. It provides functionalities such as creating, listing, and deleting ShadowCopies, as well as exporting them to VHD files. It is important to run the tool with Administrator privileges to access all its capabilities.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
Tool used for dumping memory from Android devices with root access requirement and forensic soundness considerations.
A tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container, aiding in digital forensic triage.
A free, open source collection of tools for forensic artifact and image analysis.
A framework/scripting tool to standardize and simplify the process of scripting favorite Live Acquisition utilities for Incident Responders.
A library and set of tools for accessing and analyzing storage media devices and partitions for forensic analysis and investigation.
A library to access and read QEMU Copy-On-Write (QCOW) image file formats with support for zlib compression and AES-CBC encryption.
Windows anti-forensics USB monitoring tool with the ability to shutdown the computer upon detecting the unplugging of a specified USB device.
No More Ransom is a collaborative project to combat ransomware attacks by providing decryption tools and prevention advice.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.