Skip to content
@fox-it

Fox-IT

Part of NCC Group

Popular repositories Loading

  1. dissect dissect Public

    Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from various disk and file formats, developed by Fox-IT (pa…

    938 65

  2. aclpwn.py aclpwn.py Public

    Active Directory ACL exploitation with BloodHound

    Python 703 108

  3. Invoke-ACLPwn Invoke-ACLPwn Public

    PowerShell 514 86

  4. log4j-finder log4j-finder Public

    Find vulnerable Log4j2 versions on disk and also inside Java Archive Files (Log4Shell CVE-2021-44228, CVE-2021-45046, CVE-2021-45105)

    Python 435 97

  5. cve-2019-1040-scanner cve-2019-1040-scanner Public

    Python 286 54

  6. dissect.cstruct_legacy dissect.cstruct_legacy Public

    A no-nonsense c-like structure parsing library for Python

    Python 239 25

Repositories

Showing 10 of 85 repositories
  • dissect.target Public

    The Dissect module tying all other Dissect modules together. It provides a programming API and command line tools which allow easy access to various data sources inside disk images or file collections (a.k.a. targets).

    fox-it/dissect.target’s past year of commit activity
    Python 48 AGPL-3.0 50 106 (15 issues need help) 22 Updated Dec 12, 2024
  • dissect Public

    Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from various disk and file formats, developed by Fox-IT (part of NCC Group).

    fox-it/dissect’s past year of commit activity
    938 AGPL-3.0 65 3 1 Updated Dec 10, 2024
  • dissect.esedb Public

    A Dissect module implementing a parser for Microsofts Extensible Storage Engine Database (ESEDB), used for example in Active Directory, Exchange and Windows Update.

    fox-it/dissect.esedb’s past year of commit activity
    Python 18 Apache-2.0 6 3 1 Updated Dec 5, 2024
  • dissect-docs Public

    Dissect documentation project

    fox-it/dissect-docs’s past year of commit activity
    7 AGPL-3.0 7 0 1 Updated Dec 5, 2024
  • flow.record Public

    Recordization library

    fox-it/flow.record’s past year of commit activity
    Python 7 AGPL-3.0 9 5 2 Updated Dec 5, 2024
  • dissect-add-on-for-splunk Public

    A splunk plugin that provides sourcetyping for ingestion and processing of dissect records

    fox-it/dissect-add-on-for-splunk’s past year of commit activity
    2 AGPL-3.0 0 0 0 Updated Dec 4, 2024
  • dissect.hypervisor Public

    A Dissect module implementing parsers for various hypervisor disk, backup and configuration files.

    fox-it/dissect.hypervisor’s past year of commit activity
    Python 5 AGPL-3.0 5 0 0 Updated Nov 28, 2024
  • acquire Public

    acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container.

    fox-it/acquire’s past year of commit activity
    Python 92 AGPL-3.0 26 28 (5 issues need help) 4 Updated Nov 26, 2024
  • dissect.jffs Public

    A Dissect module implementing a parser for the JFFS2 file system, commonly used by router operating systems.

    fox-it/dissect.jffs’s past year of commit activity
    Python 0 AGPL-3.0 1 1 0 Updated Nov 25, 2024
  • dissect.archive Public

    A Dissect module implementing parsers for various archive and backup formats.

    fox-it/dissect.archive’s past year of commit activity
    Python 0 AGPL-3.0 1 1 0 Updated Nov 18, 2024