x746b/winforensics-mcp

A comprehensive MCP server for Windows digital forensics on KALI Linux

42
/ 100
Emerging

This is a comprehensive toolkit for digital forensics and incident response (DFIR) professionals who need to investigate Windows systems but prefer working in a Linux environment. It takes raw Windows forensic images or collected artifacts and produces detailed reports on system activity, user actions, and potential malware. Cybersecurity analysts and incident responders are the primary users.

Use this if you are a cybersecurity analyst or incident responder who needs to perform in-depth forensic analysis on Windows systems using a Linux-based toolkit, without relying on any Windows tools.

Not ideal if you primarily work with macOS or memory forensics, as those are handled by separate, related projects.

digital-forensics incident-response malware-analysis cybersecurity-investigation threat-hunting
No Package No Dependents
Maintenance 10 / 25
Adoption 5 / 25
Maturity 13 / 25
Community 14 / 25

How are scores calculated?

Stars

11

Forks

3

Language

YARA

License

MIT

Last pushed

Feb 26, 2026

Commits (30d)

0

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/mcp/x746b/winforensics-mcp"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.