CDQR - Cold Disk Quick Response
Recover event log entries from an image by heuristically looking for record structures.
Digital forensics for incident response. Uncover digital evidence to understand and resolve security breaches effectively.
Recover event log entries from an image by heuristically looking for record structures.
A utility for recovering deleted files from ext3 or ext4 partitions.
Universal hexadecimal editor for computer forensics, data recovery, and IT security.
A library to access and parse OLE 2 Compound File (OLECF) format files.
A tool for extracting files from packet capture files with ease of use and extensibility for Python developers.
Anti-forensics tool for Red Teamers to erase footprints and test incident response capabilities.
Visually inspect regex matches in binary data/text with YARA and regular expressions, displaying matched bytes and surrounding context.
A library to access the Expert Witness Compression Format (EWF) for digital forensics and incident response.
Analyse a forensic target to find and report files found and not found in hashlookup CIRCL public service.
iOSForensic is a Python tool for forensic analysis on iOS devices, extracting files, logs, SQLite3 databases, and .plist files into XML.
DMG2IMG is a tool for converting Apple compressed dmg archives to standard image disk files with support for zlib, bzip2, and LZFSE compression.
A free, open-source file data recovery software that can recover lost files from hard disks, CD-ROMs, and digital camera memory.
Dump the contents of the location database files on iOS and macOS with output options like KML and CSV.
A shell script for basic forensic collection of various artefacts from UNIX systems.
A software utility with forensic tools for smartphones, offering powerful data extraction and decoding capabilities.
Powerful tool for searching and hunting through Windows forensic artefacts with support for Sigma detection rules and custom Chainsaw detection rules.
Collects and organizes Linux OS data for detailed analysis and incident response.
A repository containing material from a talk on sub-domain enumeration techniques
A script to extract subdomains/emails for a given domain using SSL/TLS certificate dataset on Censys.
A tool for fixing acquired .evt Windows Event Log files in digital forensics.
A Python-based engine for automatic creation of timelines in digital forensic analysis