What is Linux Expl0rer

A Python 2.x tool for memory analysis on Mac OS X systems with support for various OS versions and memory image export capabilities.

User-Friendly Live Forensics Toolbox for Linux Endpoints

This is a user-friendly live forensics toolbox designed for Linux endpoints, developed using Python and Flask. Capabilities: - View the complete list of running processes. - Inspect the memory map of processes and easily retrieve memory strings. - Dump the memory of a process with a single click. - Automatically search for hashes in public services such as VirusTotal, Intezer, Analyze AlienVault OTX, and MalShare. - Find the list of users. - Search for suspicious files using name or regex patterns. - Execute netstat commands. - Perform Whois lookups. - Access logs including syslog, auth.log (user authentication log), ufw.log (firewall log), and bash history. - Use chkrootkit for anti-rootkit measures. - Utilize YARA to scan a file or directory with YARA signatures by @Neo23x0, scan the memory address space of a running process, and upload your own YARA signature.

System Requirements

Python version 3.6 is required for this application.

Installation Instructions

To install the software, follow these steps: 1. Download the master zip file using the command: wget https://github.com/intezer/linux-explorer/archive/master.zip -O master.zip 2. Unzip the downloaded file: unzip master.zip 3. Change into the directory: cd linux-explorer-master 4. Execute the deployment script: ./deploy.sh Usage: To start using the application, open your browser and navigate to: http://127.0.0.1:8080 Configure API keys (optional): - Open the configuration file with nano: nano config.py - Update the following lines with your API keys: INTEZER_APIKEY = '', VT_APIKEY = '', OTX_APIKEY = '', MALSHARE_APIKEY = '' Notes: For secure remote access, we recommend using an NGINX reverse proxy with basic HTTP authentication and SSL. This setup has been tested on Ubuntu 16.04. Misc: For additional guidance, refer to the "How to" section.
 

Linux Expl0rer Reviews

Write a Review

No reviews yet. Be the first to review this tool!

Write a Review

Share your experience with Linux Expl0rer tool and help others make informed decisions.

Featured

Specops Software
Free

Specops Software View Specops Software

Specops Software empowers organizations to fortify their IT security by addressing the critical vulnerability of password management and authentication. As a premier vendor, Specops Software provides advanced solutions designed to proactively block weak passwords, enforce robust authentication protocols, and ensure compliance with stringent industry standards like CJIS and HITRUST. With deep native integration into Active Directory and on-premises data storage, Specops Software offers unparalleled security and control for sensitive business data.

Active Directory password policy auditing against compliance standards
Breached password detection for over 900 million known compromised passwords
Zero-trust access evaluation and enhancement
Infisical
Free

Infisical View Infisical

Infisical is the premier open-source platform designed for unified management of secrets, certificates, and configurations across your entire organization. It seamlessly integrates into your development workflows, CI/CD pipelines, and cloud infrastructure, ensuring secure storage and automated injection of sensitive information. Empower your team with robust features like versioning, point-in-time recovery, comprehensive audit logging, and automated secret rotation for enhanced security and operational efficiency.

Open-source secrets management platform
Unified management of secrets, certificates, and configs
Seamless integration with development workflows and CI/CD
Click Studios
Free

Click Studios View Click Studios

Click Studios is an Australian-based Agile software development company dedicated to evolving Passwordstate, their robust Enterprise Password Management solution. Continuously refined through customer insights and cybersecurity advancements, Passwordstate offers advanced features for secure sensitive information management and stringent compliance. Click Studios provides scalable, secure, and user-friendly password management solutions, empowering businesses globally with affordable and reliable access control.

Secure Enterprise Password Management
Continuous Feature Enhancement
Customer Feedback Driven Development

Similar Tools

Exterro
Free

Exterro View Exterro

Exterro is a comprehensive Legal Governance, Risk, and Compliance (Legal GRC) platform designed for in-house legal, privacy, and IT teams within Global 2000 and Am Law 200 organizations. By automating the intricate connections between privacy, legal operations, digital investigations, cybersecurity response, compliance, and information governance, Exterro empowers legal departments to proactively manage risks and achieve defensible outcomes. Trusted globally by corporations, law firms, government, and law enforcement agencies, Exterro drives successful, cost-effective risk management through its integrated GRC solution.

Unified Legal GRC Platform
Automated Privacy Management
Digital Investigations
Belkasoft
Free

Belkasoft View Belkasoft

Belkasoft provides advanced digital forensic solutions to public agencies, corporate security, and private investigators worldwide. Its flagship product, Belkasoft Evidence Center (BEC), empowers investigators to efficiently acquire, analyze, group, and present digital evidence. BEC is specifically designed for seamless teamwork and robust access control, offering powerful capabilities like remote data acquisition, advanced data carving, cross-case searching, and comprehensive incident investigation support.

Efficient Digital Evidence Acquisition
Comprehensive Data Analysis and Grouping
Streamlined Teamwork and Access Management
Zenduty
Free

Zenduty View Zenduty

A library to access and parse Windows Shortcut File (LNK) format.

YARALYZER
Free

YARALYZER View YARALYZER

Python forensic tool for extracting and analyzing information from Firefox, Iceweasel, and Seamonkey browsers.

YARA-Forensics
Free

YARA-Forensics View YARA-Forensics

A library and tools to access and manipulate VMware Virtual Disk (VMDK) files.

xxUSBSentinel
Free

xxUSBSentinel View xxUSBSentinel

A console program for file recovery through data carving.