Home / Incident Management / Digital Forensics

Digital Forensics

Digital forensics for incident response. Uncover digital evidence to understand and resolve security breaches effectively.

Try these 212 AI Digital Forensics Tools

libfsntfs
Free

libfsntfs View libfsntfs

A tool that uses Plaso to parse forensic artifacts and disk images, creating custom reports for easier analysis.

libevt
Free

libevt View libevt

A repository containing material from a talk on sub-domain enumeration techniques

libqcow
Free

libqcow View libqcow

IE10Analyzer can parse and recover records from WebCacheV01.dat, providing detailed information and conversion capabilities.

libregf
Free

libregf View libregf

libevt is a library to access and parse Windows Event Log (EVT) files.

libolecf
Free

libolecf View libolecf

Tool for parsing NTFS journal files, $Logfile, and $MFT.

libsmdev
Free

libsmdev View libsmdev

Autopsy is a GUI-based digital forensics platform for analyzing hard drives and smart phones, with a plug-in architecture for custom modules.

libsmraw
Free

libsmraw View libsmraw

Visually inspect regex matches in binary data/text with YARA and regular expressions, displaying matched bytes and surrounding context.

libvmdk
Free

libvmdk View libvmdk

A comprehensive guide to incident response and computer forensics, covering the entire lifecycle of incident response and remediation.

libvslvm
Free

libvslvm View libvslvm

A powerful tool for analyzing and visualizing system activity timelines.

LiME
Free

LiME View LiME

Hoarder is a tool to collect and parse windows artifacts.

LiMEaide v2.0
Free

LiMEaide v2.0 View LiMEaide v2.0

Analyzing WiFiConfigStore.xml file for digital forensics on Android devices.

Linux Expl0rer
Free

Linux Expl0rer View Linux Expl0rer

A Python 2.x tool for memory analysis on Mac OS X systems with support for various OS versions and memory image export capabilities.

Mac Locations Scraper
Free

Mac Locations Scraper View Mac Locations Scraper

OSXCollector is a forensic evidence collection & analysis toolkit for OSX.

Mac4n6 Group
Free

Mac4n6 Group View Mac4n6 Group

A repository containing material from a talk on sub-domain enumeration techniques

mac_apt
Free

mac_apt View mac_apt

Hindsight is a free tool for analyzing web artifacts from Google Chrome/Chromium browsers and presenting the data in a timeline for forensic analysis.

macMRU-Parser
Free

macMRU-Parser View macMRU-Parser

Comprehensive suite for advanced file analysis and software supply chain security.

Magnet ACQUIRE
Free

Magnet ACQUIRE View Magnet ACQUIRE

iOS Mobile Backup Xtractor tool for extracting iOS backups.

MalConfScan
Free

MalConfScan View MalConfScan

A command-line utility to show and change EXIF information in JPEG files

malscan
Free

malscan View malscan

Automated collection tool for incident response triage in Windows systems.

Margarita Shotgun
Free

Margarita Shotgun View Margarita Shotgun

A collection of Mac OS X and iOS forensics resources with a focus on artifact collection and collaboration.

MasterParser
Free

MasterParser View MasterParser

A Forensic Framework for Skype with various investigative options.

Meerkat
Free

Meerkat View Meerkat

iOS Mobile Backup Xtractor tool for extracting iOS backups.

M.E.A.T. - Mobile Evidence Acquisition Toolkit
Free

M.E.A.T. - Mobile Evidence Acquisition Toolkit View M.E.A.T. - Mobile Evidence Acquisition Toolkit

Python script to parse the NTFS USN Change Journal.