Skip to content

Releases: tsale/BlueSploit

BlueSploit

BlueSploit Pre-release
Pre-release

Choose a tag to compare

@tsale tsale released this 20 Dec 10:00

This release contains:

  • Added new modules
    • "Yara" support
    • "Collect" artifacts
    • "IOC" extract/defang
    • "Hash" individual files or everything inside a directory
  • Code review

BlueSploit is a DFIR framework with the main purpose being to quickly capture artifacts for later review.
Most of the commands used are OS native commands. Native commands have their limitations, therefore, some executables will be used.

BlueSploit

BlueSploit Pre-release
Pre-release

Choose a tag to compare

@tsale tsale released this 08 Dec 20:07

BlueSploit is a DFIR framework with the main purpose being to quickly capture artifacts for later review.
Most of the commands used are OS native commands. Native commands have their limitations, therefore, some executables will be used.

BlueSploit

BlueSploit Pre-release
Pre-release

Choose a tag to compare

@tsale tsale released this 02 Dec 09:20

BlueSploit is a DFIR framework with the main purpose being to quickly capture artifacts for later review.
Most of the commands used are OS native commands. Native commands have their limitations, therefore, some executables will be used.

BlueSploit

BlueSploit Pre-release
Pre-release

Choose a tag to compare

@tsale tsale released this 17 Nov 08:42

BlueSploit is a DFIR framework with the main purpose being to quickly capture artifacts for later review.
Most of the commands used are OS native commands. Native commands have their limitations, therefore, some executables will be used.

BlueSploit

BlueSploit Pre-release
Pre-release

Choose a tag to compare

@tsale tsale released this 28 Aug 07:09

BlueSploit is a DFIR framework that will make it easy for the analyst to kick off an investigation.
The aim of this framework is to use mostly "live of the land" tools in PowerShell and make the investigation a breeze with only a standalone executable.