analyzing-outlook-pst-for-email-forensics

mukul975/analyzing-outlook-pst-for-email-forensics · Agent Skill (multi-file)

by mukul975 · bundle

Published · Last updated


Analyze Microsoft Outlook PST and OST files for email forensic evidence including message content, headers, attachments, deleted items, and metadata using libpff, pst-utils, and forensic email analysis tools for legal investigations and incident response.

SKILL.md

Files

This skill is a package of 6 files. Install with the command above, or download the folder.

  • 📄SKILL.md entry
  • 📁references
  • 📄api-reference.md 2.5 KB
  • 📄standards.md 633 B
  • 📄workflows.md 396 B
  • 📁scripts
  • ⚙️agent.py 5.9 KB
  • 📄LICENSE 11.0 KB

Related

  1. analyzing-prefetch-files-for-execution-history · mukul975 bundle
    Parse Windows Prefetch files to determine program execution history including run counts, timestamps, and referenced files for forensic investigation.
    24.6k
    repo stars
  2. analyzing-usb-device-connection-history · mukul975 bundle
    Investigate USB device connection history from Windows registry, event logs, and setupapi logs to track removable media usage and potential data exfiltration.
    24.6k
    repo stars
  3. investigating-ransomware-attack-artifacts · mukul975 bundle
    Identify, collect, and analyze ransomware attack artifacts to determine the variant, initial access vector, encryption scope, and recovery options.
    24.6k
    repo stars
  4. analyzing-memory-forensics-with-lime-and-volatility · mukul975 bundle
    Acquires Linux memory using the LiME kernel module and analyzes the image with Volatility 3 to extract processes, network connections, bash history, kernel modules, and injected code for incident response.
    24.6k
    repo stars
  5. extracting-windows-event-logs-artifacts · mukul975 bundle
    Extract, parse, and analyze Windows Event Logs (EVTX) using Chainsaw, Hayabusa, and EvtxECmd to detect lateral movement, persistence, and privilege escalation.
    24.6k
    repo stars
  6. performing-timeline-reconstruction-with-plaso · mukul975 bundle
    Build comprehensive forensic super-timelines using Plaso (log2timeline) to correlate events across file systems, logs, and artifacts into a unified chronological view.
    24.6k
    repo stars

Frequently asked questions

How do I install the analyzing-outlook-pst-for-email-forensics skill?

Run npx skillmds add mukul975/analyzing-outlook-pst-for-email-forensics in your terminal (requires Node.js), paste this page's agent-chat prompt into Claude, Cursor, or any MCP-connected agent, or download the SKILL.md file and copy it into your agent's skills directory.

What does the analyzing-outlook-pst-for-email-forensics skill do?

Analyze Microsoft Outlook PST and OST files for email forensic evidence including message content, headers, attachments, deleted items, and metadata using libpff, pst-utils, and forensic email analysis tools for legal investigations and incident response. It is listed under Security, Data & Analytics, Productivity, Data Analysis, Incident Response on SkillMD.

Is analyzing-outlook-pst-for-email-forensics safe to use?

SkillMD's automated safety review verdict for this skill is CAUTION. Independent scanners report: SkillSpector: PASS, Skill Scanner: PASS. Capability flags: executes scripts, makes network calls, reads secrets. SkillMD never runs a skill's scripts for you; review the SKILL.md before installing.

Which AI agents work with analyzing-outlook-pst-for-email-forensics?

This skill is tagged as working with Claude Code, Claude.ai, OpenAI Codex. SKILL.md is an open format, so most agents that read a skills directory can load it too.

Is analyzing-outlook-pst-for-email-forensics free to use?

Yes. Installing skills from SkillMD is free. This skill is licensed under Apache-2.

Who published analyzing-outlook-pst-for-email-forensics?

mukul975 (@mukul975) published this skill. Their other Agent Skills are listed on their SkillMD profile.