CyberPipe, a PowerShell script for digital evidence collection, has been updated with enhancements in collection, capabilities, and reliability. New features include intelligent collection with dual disk space validation, a QuickTriage profile, and improved BitLocker recovery. #DFIR
Posts by Minoru Kobayashi
DataTUI
A fast, keyboard‑first terminal data viewer built with Rust and Ratatui. DataTUI lets you explore CSV/TSV, Excel, and SQLite data with tabs, sorting, filtering, SQL (via Polars), and more.
#DFIR
datatui.io
Running EZ Tools Natively on Linux: A Step-by-Step Guide #DFIR
www.sans.org/blog/running...
UAC (Unix-like Artifacts Collector) v3.1.0 has been released.
Also, my tool for acquiring /etc/ld.so.preload, which is hidden by rootkits, has been merged.
#DFIR #Linux
github.com/tclahr/uac/r...
Hi #DFIR community,
I'm excited to announce that I have published my new forensic tool for analyzing journal data from #Linux file systems (EXT4 and XFS).
It’s called Forensic Journal Timeline Analyzer (FJTA).
🔗 github.com/mnrkbys/fjta
This tool requires TSK's develop branch to recognize XFS.