scancode.io icon indicating copy to clipboard operation
scancode.io copied to clipboard

Improve Windows package detection

Open pombredanne opened this issue 3 years ago • 0 comments

https://github.com/forensicanalysis/artifacts was spun from GRR and contains interesting Windows-related pointers that we could reuse

https://github.com/log2timeline/dfwinreg/tree/main/dfwinreg is another take (from Google's sec team members) on a registry parser based on https://github.com/libyal/libreg and used here https://github.com/log2timeline/plaso/tree/main/plaso/parsers/winreg_plugins and there https://github.com/libyal/winreg-kb ... also with many interesting bits.

pombredanne avatar Aug 02 '21 14:08 pombredanne