Digital Forensics
Digital forensics for incident response. Uncover digital evidence to understand and resolve security breaches effectively.
Try these 212 AI Digital Forensics Tools
MemProcFS
A tool for collecting and analyzing screenshots from remote desktop protocols, web applications, and VNC connections.
MemLabs
Magnet ACQUIRE offers robust data extraction capabilities for digital forensics investigations, supporting a wide range of devices.
MFTExtractor
A framework for orchestrating forensic collection, processing, and data export.
MFTMactime
Collects and organizes Linux OS data for detailed analysis and incident response.
MFT_Browser
A DFVFS backed viewer project with a WxPython GUI, aiming to enhance file extraction and viewing capabilities.
mXtract
An open source digital forensic tool for processing and analyzing digital evidence with high performance and multiplatform support.
Network Appliance Forensic Toolkit
Free software for extracting Microsoft cabinet files, supporting all features and formats of Microsoft cabinet files and Windows CE installation files.
nfspy
A cross-platform registry hive editor for forensic analysis with advanced features like hex viewer and reporting engine.
Nomoreransom
A collection of PowerShell modules for artifact gathering and reconnaissance of Windows-based endpoints.
nTimetools
XMLStarlet offers a suite of command line utilities for manipulating and querying XML documents.
OS X Auditor
A network forensics toolkit that transforms network traffic data into graph-based representations for interactive analysis and visualization through a web interface.
OTE
A command-line tool for creating hex dumps, converting between binary and human-readable representations, and patching binary files.
OSXCollector
IE10Analyzer can parse and recover records from WebCacheV01.dat, providing detailed information and conversion capabilities.
Pancake Viewer
Tool used for dumping memory from Android devices with root access requirement and forensic soundness considerations.
PANORAMA
A library to access the Windows New Technology File System (NTFS) format with read-only support for NTFS versions 3.0 and 3.1.
PassMark OSForensics
IE10Analyzer can parse and recover records from WebCacheV01.dat, providing detailed information and conversion capabilities.