Skip to content

GRREAT is a tool written in Python that will integrate with Google GRR. It will allow the user to hash the contents of a box with a piecewise algorithm and store the hashes. The user could later hash the contents again to determine what has been changed and the extent of those changes.

License

ForensicTools/GRREAT-475_2141-Chaigon-Failey-Siebert

Repository files navigation

GRREAT

GRREAT is a tool written in Python that will integrate with Google GRR. It will allow the user to hash the contents of a box with a piecewise algorithm and store the hashes. The user could later hash the contents again to determine what has been changed and the extent of those changes.

The discussion for the integration of this feature in GRR is on the dev forum.

Using GRREAT

In order to utilize this tool, the user will need to download and install a few dependancies:

GRR

GRR (for GRR Rapid Response) is an incident response framework focused on remote live forensics. The AsciiDoc documentation is hosted in a separate repository. GRR uses the Google Python Style conventions.

Piecewise hashing in Python

Two Python wrappers for ssdeep already exist -- used for reference:

Contributors

About

GRREAT is a tool written in Python that will integrate with Google GRR. It will allow the user to hash the contents of a box with a piecewise algorithm and store the hashes. The user could later hash the contents again to determine what has been changed and the extent of those changes.

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Contributors 4

  •  
  •  
  •  
  •