Framework for detecting forensic artifact changes across OS/software versions using automated GUI actions in VMs.
ADARE enables researchers and forensic analysts to create reproducible experiments that automate desktop interactions in virtual machines, capture system state changes, and analyze forensic artifacts.
All comprehensive information can be found in the main documentation: docs/index.html
See ROADMAP.md for current development tasks, planned features, and known issues.