Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Categories

Digital Forensics

Tools for acquiring, preserving, and analyzing digital evidence for legal or investigative purposes.

Kitploit recommended

Top tools

10 selected
autopsy preview#1

autopsy

GitHubsleuthkit/autopsy
3.3k4 months ago
sleuthkit preview#2

sleuthkit

GitHubsleuthkit/sleuthkit
3.1k24 days ago
volatility3 preview#3

volatility3

GitHubvolatilityfoundation/volatility3
4.3k3 days ago
plaso preview#4

plaso

GitHublog2timeline/plaso
2.2k15 days ago
bulk_extractor preview#5

bulk_extractor

GitHubsimsong/bulk_extractor
1.4k11 days ago
velociraptor preview#6

velociraptor

GitHubvelocidex/velociraptor
4.2k2 days ago
timesketch preview#7

timesketch

GitHubgoogle/timesketch
3.4k4 days ago
mvt preview#8

mvt

GitHubmvt-project/mvt
13.1k4 days ago
androidqf preview#9

androidqf

GitHubmvt-project/androidqf
23011 days ago
avml preview#10

avml

GitHubmicrosoft/avml
1.1k24 days ago
NewestRelevanceMost popularRecently updated
1206 results
apk-medit preview

apk-medit

GitHubsterrasec/apk-medit

memory search and patch tool on debuggable apk without root & ndk

android-securitymemory-forensicspenetration-testing+2
4313 months ago
memhunter preview

memhunter

GitHubmarcosd4h/memhunter

Live hunting of code injection techniques

defensive-toolsmemory-forensicsmalware-analysis+1
3847 years ago
DFIR-O365RC preview

DFIR-O365RC

GitHubanssi-fr/dfir-o365rc

PowerShell module for Office 365 and Azure log collection

forensicsdigital-forensicscloud-security+2
28211 months ago
shed preview

shed

GitHubenkomio/shed

.NET runtime inspector

dynamic-analysis-sandboxingmemory-forensicsreverse-engineering+1
2757 years ago
DotDumper preview

DotDumper

GitHubadvanced-threat-research/dotdumper

An automatic unpacker and logger for DotNet Framework targeting files

dynamic-analysis-sandboxingmemory-forensicsreverse-engineering+4
2663 years ago
asatools preview

asatools

GitHubnccgroup/asatools

Main repository to pull all NCC Group Cisco ASA-related tool projects.

embedded-systems-securitymemory-forensicsreverse-engineering+3
2388 years ago
nullmap preview

nullmap

GitHubsamueltulach/nullmap

Using CVE-2023-21768 to manual map kernel mode driver

privilege-escalationmemory-forensicsexploitation+3
2013 years ago
BlueTeam.Lab preview

BlueTeam.Lab

GitHubop7ic/blueteam.lab

Blue Team detection lab created with Terraform and Ansible in Azure.

defensive-toolsconfiguration-auditingdigital-forensics+7
1871 year ago
VISION-ProcMon preview

VISION-ProcMon

GitHubforensicxlab/vision-procmon

A ProcessMonitor visualization application written in rust.

malware-analysisdigital-forensicslog-analysis
1823 years ago
patriot preview

patriot

GitHubjoe-desimone/patriot

In-memory stealth detection tool that identifies process hollowing, module stomping, unbacked executable regions, and anomalous CONTEXT structures…

defensive-toolsmemory-forensicsmalware-analysis+3
1644 years ago
LiMEaide preview

LiMEaide

GitHubkd8bny/limeaide

A python application designed to remotely dump RAM of a Linux client and create a volatility profile for later analysis on your local host.

memory-forensicsforensicsdigital-forensics
1577 years ago
SafeText preview

SafeText

GitHubdavidjacobson/safetext

Script to remove homoglyphs and zero-width characters to allow for safe distribution of documents from anonymous sources.

data-exfiltrationforensicsdigital-forensics+1
1367 years ago
ModuleShifting preview

ModuleShifting

GitHubnaksyn/moduleshifting

Stealthier variation of Module Stomping and Module Overloading injection techniques that reduces memory IoCs. Implemented in Python ctypes

memory-forensicsred-teamingpayload-development+1
1352 years ago
CVE-2018-17182 preview

CVE-2018-17182

GitHubjas502n/cve-2018-17182

Linux kernel use-after-free (UAF) privilege escalation exploit for CVE-2018-17182, providing root shell access on affected kernels (3.16 to 4.18.8).…

privilege-escalationmemory-forensicsvulnerability-analysis+2
1307 years ago
MemITM preview

MemITM

GitHubamossys/memitm

Tool to make in memory man in the middle

dynamic-analysis-sandboxingmemory-forensicsexploitation+4
1267 years ago
IronPE preview

IronPE

GitHubiss4cf0ng/ironpe

Rust-based Windows PE manual loader that maps and executes x86/x64 executables from memory, demonstrating internal loader behavior and PE structure…

memory-forensicsexploitationreverse-engineering+5
1246 months ago
amcache-evilhunter preview

amcache-evilhunter

GitHubcristianzsh/amcache-evilhunter

Parse and analyze a Windows Amcache.hve registry hive, VirusTotal integration.

forensicsmalware-analysisdigital-forensics+2
1141 year ago
CVE-2025-24204 preview

CVE-2025-24204

GitHubffri/cve-2025-24204

PoC and technical details of CVE-2025-24204

privilege-escalationencryption-decryption-toolsmemory-forensics+2
11311 months ago
Previous1…444546…67Next