Home / Incident Management / Digital Forensics

Digital Forensics

Digital forensics for incident response. Uncover digital evidence to understand and resolve security breaches effectively.

Try these 212 AI Digital Forensics Tools

mem
Free

mem

Windows event log fast forensics timeline generator and threat hunting tool.

MemProcFS
Free

MemProcFS

A tool for collecting and analyzing screenshots from remote desktop protocols, web applications, and VNC connections.

MemLabs
Free

MemLabs

Magnet ACQUIRE offers robust data extraction capabilities for digital forensics investigations, supporting a wide range of devices.

MFTExtractor
Free

MFTExtractor

A framework for orchestrating forensic collection, processing, and data export.

MFTMactime
Free

MFTMactime

Collects and organizes Linux OS data for detailed analysis and incident response.

MFT_Browser
Free

MFT_Browser

A DFVFS backed viewer project with a WxPython GUI, aiming to enhance file extraction and viewing capabilities.

mXtract
Free

mXtract

An open source digital forensic tool for processing and analyzing digital evidence with high performance and multiplatform support.

Network Appliance Forensic Toolkit
Free

Network Appliance Forensic Toolkit

Free software for extracting Microsoft cabinet files, supporting all features and formats of Microsoft cabinet files and Windows CE installation files.

nightHawk Response
Free

nightHawk Response

AMExtractor is an Android Memory Extractor tool.

nfspy
Free

nfspy

A cross-platform registry hive editor for forensic analysis with advanced features like hex viewer and reporting engine.

Nomoreransom
Free

Nomoreransom

A collection of PowerShell modules for artifact gathering and reconnaissance of Windows-based endpoints.

nTimetools
Free

nTimetools

XMLStarlet offers a suite of command line utilities for manipulating and querying XML documents.

Open Backup Extractor
Free

Open Backup Extractor

A binary analysis platform for analyzing binary programs

Orochi
Free

Orochi

A tool for discovering, analyzing, and remedying sensitive data

OS X Auditor
Free

OS X Auditor

A network forensics toolkit that transforms network traffic data into graph-based representations for interactive analysis and visualization through a web interface.

OTE
Free

OTE

A command-line tool for creating hex dumps, converting between binary and human-readable representations, and patching binary files.

OSXCollector
Free

OSXCollector

IE10Analyzer can parse and recover records from WebCacheV01.dat, providing detailed information and conversion capabilities.

Pancake Viewer
Free

Pancake Viewer

Tool used for dumping memory from Android devices with root access requirement and forensic soundness considerations.

PANORAMA
Free

PANORAMA

A library to access the Windows New Technology File System (NTFS) format with read-only support for NTFS versions 3.0 and 3.1.

PassMark OSForensics
Free

PassMark OSForensics

IE10Analyzer can parse and recover records from WebCacheV01.dat, providing detailed information and conversion capabilities.