What is winforensics-mcp?
WinForensics MCP is a comprehensive forensic toolkit that runs on Linux and natively parses Windows artifacts using pure Python libraries. It covers EVTX logs, registry, execution artifacts, file system, user activity, network forensics, and malware detection. High-level orchestrators enable efficient investigations like execution analysis, user activity correlation, IOC hunting, and timeline building.
What is the best alternative to winforensics-mcp?
fastmcp is the top-rated alternative to winforensics-mcp in the Dev Tooling category.
Is there a free alternative to winforensics-mcp?
fastmcp is a free, open-source alternative.
Is winforensics-mcp open source?
Yes, winforensics-mcp is open source on GitHub, licensed under MIT.