Enables autonomous digital forensics and incident response through 21 typed forensic tools covering disk, memory, registry, network, timeline, carving, and patterns, integrated with AI-driven reasoning and self-correction.
Provides Windows system diagnostic capabilities to AI agents, allowing them to access event logs, crash information, system uptime, and perform stability analysis.
Enables forensic analysis of Windows event logs (.evtx) using Hayabusa, providing tools for timeline generation, threat hunting, and rule updates via MCP.