vicgc/cs6963
forensics
A Forensic tool for analyzing known.met files and carve known.met entries from unallocated space of expert witness images (*.e01 - eg Encase) which are mounted with FTK Imager V3.0 and later.
This repository is cataloged as part of our automated global GitHub synchronization. Full telemetry, velocity snapshots, and code summaries are scheduled for continuous enrichment.
forensics
Command line tool for upload and downloading files from a Metadisk node.
MBR bootloader code matcher, to recognize which operating system will be booted and speed-up forensic analysis.
Differential Analysis of Malware in Memory