mandiant / VM-Packages

Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.
Apache License 2.0
123 stars 61 forks source link

Package proposal: autopsy.vm #709

Open day1player opened 8 months ago

day1player commented 8 months ago

Package Name

autopsy.vm

Tool Name

Autopsy

Package type

GITHUB_REPO

Is the tool a console application?

false

Tool's version number

4.21.0

Category

Forensic

Tool's authors

Sleuthkit

Tool's description

Autopsy is a digital forensics platform and graphical interface to The Sleuth Kit and other digital forensics tools.

Download URL

https://github.com/sleuthkit/autopsy/releases/download/autopsy-4.21.0/autopsy-4.21.0-64bit.msi

Download SHA256 Hash

abcdef1234567890

Why is this tool a good addition?

Requested by a Commando VM user

day1player commented 8 months ago

I would like to pass the decision for this one onto @mandiant/flare-vm, I'm not familiar with the tool

mr-tz commented 8 months ago

It's a great tool for forensics, but I don't necessarily see it as part of FLARE VM (in the context of malware/binary analysis).

day1player commented 8 months ago

Ok yeah that would probably make more sense for commando then, since we would want to inspect the system for forensics after payload detonation or some ttp testing.. Sounds good, I will look into it then :)

naacbin commented 6 months ago

This issue can be closed (see #782) @Ana06