Takajō (鷹匠) is a fast forensics analyzer for Hayabusa results, written in Nim.
Created by Yamato Security — it analyzes
Hayabusa's "catches" (results).
Takajō (鷹匠) is a fast forensics analyzer for Hayabusa results, written in memory-safe Nim. Takajō means "Falconer" in Japanese and was chosen as it analyzes Hayabusa's "catches" (results) — extracting indicators, building focused timelines and process trees, stacking events, generating HTML reports, looking up artifacts on VirusTotal, and more.
All documentation now lives on a dedicated, searchable, multi-language site:
| Section | |
|---|---|
| 🚀 Getting Started | Download, install and build Takajō |
| ⌨️ Command Reference | Every command, grouped by category |
| ✨ Features | What Takajō can do |
| 📦 Resources | Companion projects, changelog, contributing |
Grab the latest binaries from the Releases page, or see Getting Started for building from source.
The previous single-page README is preserved unchanged:
- 📄 OLD-README.md — English
- 📄 OLD-README-Japanese.md — 日本語
Contributions and bug reports are welcome — see Contributing & Support. Takajō is released under the GNU AGPLv3 license.
