Notifications
Clear all

Help with data dump

3 Posts
3 Users
0 Likes
883 Views
(@osinting)
Posts: 1
New Member
Topic starter
 

Hi...new to the site and hope this is an appropriate forum for this post...

For the DFIR folks here or those that like to collect data dumps: What tools & process do you use for organizing, examining, quantifying, etc. the data (typically in CSV format)?

If the answer is Excel, that's fine though please share specifics. Trying to help an org that found a bunch of their stuff online and there is a lot to sort through and trying to estimate scope of impact and such. Thanks in advance.

 
Posted : 28/01/2022 5:56 am
(@jadams951)
Posts: 37
Eminent Member
 

Check out Eric Zimmerman's Timeline Explorer

 
Posted : 29/01/2022 2:29 am
(@christianbergpaliscope)
Posts: 1
New Member
 

Hi!

(I am representing the company but will try to be objective, I hope that is ok, there is a free trial for you to judge yourself)

 

Paliscope YOSE. https://www.paliscope.com/products/yose/ was built for the purpose of getting a dump of data, make everything searchable, regardless of file format, and extract textual and visual intelligence using NLP and visual "AI tech".

You can search for anything in the material or browse through the extracted intelligence in the "Intelligence Center" and from there get to the source/file where the intelligence was extracted from.

The latest version will auto-detect the content in columns of CSV files and associate the content to different entities which makes it possible to build link graphs and run trace-analytics etc over the content.

 

There is a free trial or ping me a message if you (or anyone reading this post) want to try it out.

 

Best

Christian Berg

 
Posted : 29/01/2022 8:21 am
Share: