Windows forensics Engine
-
Updated
May 10, 2026 - Python
Windows forensics Engine
PowerShell Script to facilitate the processing of SRUM data for on-the-fly forensics and if needed threat hunting
SRUM forensics: prove whether a human was at the keyboard. Parse SRUDB.dat on Linux/macOS. Detect malware, exfiltration, and automated execution. Single static Rust binary.
Add a description, image, and links to the srum topic page so that developers can more easily learn about it.
To associate your repository with the srum topic, visit your repo's landing page and select "manage topics."