Skip to content
Change the repository type filter

All

    Repositories list

    • Documentation site for Velociraptor
      HTML
      Other
      20037918Updated Nov 14, 2024Nov 14, 2024
    • A Compiler from Sigma rules to VQL
      Go
      41000Updated Nov 14, 2024Nov 14, 2024
    • sigma-go

      Public
      A Go implementation and parser for Sigma rules.
      Go
      MIT License
      18200Updated Nov 13, 2024Nov 13, 2024
    • fileb0x

      Public
      a better customizable tool to embed files in go; also update embedded files remotely without restarting the server
      Go
      MIT License
      53200Updated Nov 11, 2024Nov 11, 2024
    • An EBPF trace framework for Velociraptor based on tracee
      C
      Apache License 2.0
      0000Updated Nov 11, 2024Nov 11, 2024
    • go-ntfs

      Public
      An NTFS file parser in Go
      Go
      Apache License 2.0
      226431Updated Nov 10, 2024Nov 10, 2024
    • vfilter

      Public
      A library implementing a generic SQL like query language.
      Go
      Apache License 2.0
      81900Updated Nov 10, 2024Nov 10, 2024
    • cloudvelo

      Public
      An experimental Velociraptor implementation using cloud infrastructure
      Go
      Other
      112110Updated Nov 8, 2024Nov 8, 2024
    • Hunt for SQLite files used by various applications
      Go
      GNU Affero General Public License v3.0
      131040Updated Nov 5, 2024Nov 5, 2024
    • Presentations and Workshops
      HTML
      3200Updated Oct 18, 2024Oct 18, 2024
    • grpc connection pool
      Go
      MIT License
      80000Updated Oct 16, 2024Oct 16, 2024
    • Parser for systemd journal files.
      Go
      Apache License 2.0
      0000Updated Oct 4, 2024Oct 4, 2024
    • go-ese

      Public
      Go implementation of an Extensible Storage Engine parser
      Go
      Apache License 2.0
      122730Updated Sep 19, 2024Sep 19, 2024
    • A golang implementation of a prefetch parser.
      Go
      Apache License 2.0
      31910Updated Sep 10, 2024Sep 10, 2024
    • go-vmdk

      Public
      A Go library for reading VMDK files
      Go
      Apache License 2.0
      0200Updated Sep 9, 2024Sep 9, 2024
    • PyVelociraptor contains the python bindings for the Velociraptor API.
      Python
      Other
      71620Updated Sep 4, 2024Sep 4, 2024
    • evtx

      Public
      Golang Parser for Microsoft Event Logs
      Go
      Apache License 2.0
      179850Updated Jul 30, 2024Jul 30, 2024
    • WinPmem

      Public
      The multi-platform memory acquisition tool.
      C
      Apache License 2.0
      102693250Updated Jul 11, 2024Jul 11, 2024
    • oleparse

      Public
      Golang parser for OLE files
      Go
      MIT License
      43111Updated Jun 20, 2024Jun 20, 2024
    • go-mscfb

      Public
      Parser for MSCFB (OLE2) Files
      Go
      Apache License 2.0
      0000Updated Jun 18, 2024Jun 18, 2024
    • Training

      Public
      Velociraptor - Digging Deeper Training site
      Go
      GNU General Public License v3.0
      1200Updated Jun 13, 2024Jun 13, 2024
    • go-ext4

      Public
      Parser for Ext4 filesystems
      Go
      Apache License 2.0
      0000Updated Jun 8, 2024Jun 8, 2024
    • go-vhdx

      Public
      A library to parse VHDX files
      Go
      Apache License 2.0
      0000Updated Jun 4, 2024Jun 4, 2024
    • ttlcache

      Public
      An in-memory string-interface{} map with various expiration options for golang
      Go
      MIT License
      120000Updated May 17, 2024May 17, 2024
    • Linpmem

      Public
      Linpmem is a linux memory acquisition tool
      C
      GNU General Public License v2.0
      97400Updated May 11, 2024May 11, 2024
    • Hunt the windows Registry automatically using VQL
      Rebol
      MIT License
      2410Updated May 1, 2024May 1, 2024
    • regparser

      Public
      A Golang Registry parser
      Go
      Apache License 2.0
      71110Updated Apr 4, 2024Apr 4, 2024
    • Binary Parser Generator for Go
      Go
      Apache License 2.0
      4500Updated Apr 4, 2024Apr 4, 2024
    • go-yara

      Public
      Go bindings for YARA
      C
      BSD 2-Clause "Simplified" License
      1121200Updated Mar 9, 2024Mar 9, 2024