EC DIGIT CSIRC Add-on for Sysdiagnose Analysis Framework (SAF) is a Splunk Technical Addon designed to facilitate the collection and processing of the artefacts generated by the Sysdiagnose Analysis Framework (SAF).
-
Updated
Nov 25, 2025 - Python
EC DIGIT CSIRC Add-on for Sysdiagnose Analysis Framework (SAF) is a Splunk Technical Addon designed to facilitate the collection and processing of the artefacts generated by the Sysdiagnose Analysis Framework (SAF).
Sysdiagnose is a utility on most Apple devices that can be used to gather system-wide diagnostic information. It includes logging from different services and reports on the state of systems. What is contained in a sysdiagnose will vary depending on what type of device and which version of the macOS, iOS, iPadOS, tvOS, watchOS and visionOS.
iOS sysdiagnose archive reference - structure, artifacts, databases, and forensic analysis for iOS 18.1/26.1
Add a description, image, and links to the sysdiagnose topic page so that developers can more easily learn about it.
To associate your repository with the sysdiagnose topic, visit your repo's landing page and select "manage topics."