Home / Incident Management / Digital Forensics

Digital Forensics

Digital forensics for incident response. Uncover digital evidence to understand and resolve security breaches effectively.

Try these 212 AI Digital Forensics Tools

CDQR - Cold Disk Quick Response
Free

CDQR - Cold Disk Quick Response

Recover event log entries from an image by heuristically looking for record structures.

censys-enumeration
Free

censys-enumeration

A utility for recovering deleted files from ext3 or ext4 partitions.

Chainsaw
Free

Chainsaw

Universal hexadecimal editor for computer forensics, data recovery, and IT security.

Chrome URL Dumper
Free

Chrome URL Dumper

A library to access and parse OLE 2 Compound File (OLECF) format files.

ChromeFreak
Free

ChromeFreak

A tool for extracting files from packet capture files with ease of use and extensibility for Python developers.

CyLR
Free

CyLR

Anti-forensics tool for Red Teamers to erase footprints and test incident response capabilities.

dc3dd
Free

dc3dd

Visually inspect regex matches in binary data/text with YARA and regular expressions, displaying matched bytes and surrounding context.

dcfldd
Free

dcfldd

A library to access the Expert Witness Compression Format (EWF) for digital forensics and incident response.

DFIR ORC
Free

DFIR ORC

Analyse a forensic target to find and report files found and not found in hashlookup CIRCL public service.

Diffy (DEPRECATED)
Free

Diffy (DEPRECATED)

Advanced computer forensics software with efficient features.

dfvfs
Free

dfvfs

iOSForensic is a Python tool for forensic analysis on iOS devices, extracting files, logs, SQLite3 databases, and .plist files into XML.

Digital Forensics Artifact Knowledge Base
Free

Digital Forensics Artifact Knowledge Base

DMG2IMG is a tool for converting Apple compressed dmg archives to standard image disk files with support for zlib, bzip2, and LZFSE compression.

Digital Forensics Artifacts Repository
Free

Digital Forensics Artifacts Repository

A free, open-source file data recovery software that can recover lost files from hard disks, CD-ROMs, and digital camera memory.

Digital Forensics Framework (DFF)
Free

Digital Forensics Framework (DFF)

Dump the contents of the location database files on iOS and macOS with output options like KML and CSV.

Disk Arbitrator
Free

Disk Arbitrator

A shell script for basic forensic collection of various artefacts from UNIX systems.

Dissect
Free

Dissect

A software utility with forensic tools for smartphones, offering powerful data extraction and decoding capabilities.

DMG2IMG
Free

DMG2IMG

Powerful tool for searching and hunting through Windows forensic artefacts with support for Sigma detection rules and custom Chainsaw detection rules.

Docker Explorer
Free

Docker Explorer

Collects and organizes Linux OS data for detailed analysis and incident response.

Docker Forensics Toolkit
Free

Docker Forensics Toolkit

A repository containing material from a talk on sub-domain enumeration techniques

Dshell
Free

Dshell

A script to extract subdomains/emails for a given domain using SSL/TLS certificate dataset on Censys.

Dumpzilla
Free

Dumpzilla

A tool for fixing acquired .evt Windows Event Log files in digital forensics.

DumpItForLinux
Free

DumpItForLinux

A Python-based engine for automatic creation of timelines in digital forensic analysis