Skip to content
View janstarke's full-sized avatar

Organizations

@dfir-dd

Block or report janstarke

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Incident Response Hierarchy of Needs

470 42 Updated Apr 19, 2023

Safe Rust API to libesedb

Rust 12 5 Updated Sep 10, 2025

A static analyzer for PE executables.

YARA 1,105 164 Updated Jan 30, 2026

pcqf (PC Quick Forensics) helps quickly gathering forensic evidence from Windows, Mac, and Linux systems, in order to identify potential traces of compromise.

Go 135 20 Updated Mar 7, 2023

search for IP addresses in text files

Rust 3 Updated Apr 17, 2023

Parse Windows LNK files and create bodyfile output

Rust 3 Updated Mar 12, 2023

A Fast (and safe) parser for the Windows XML Event Log (EVTX) format

Rust 879 74 Updated Feb 6, 2026

RegRipper3.0

Perl 681 145 Updated Dec 12, 2024

Rapidly Search and Hunt through Windows Forensic Artefacts

Rust 3,442 297 Updated Feb 14, 2026

A parser for the MFT (Master File Table) format

Rust 155 25 Updated Jan 3, 2026

A cryptography library from NICS Lab

Java 20 9 Updated Jan 22, 2013

YARA signature and IOC database for my scanners and tools

YARA 2,864 657 Updated Feb 5, 2026