Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Categories

Digital Forensics

Tools for acquiring, preserving, and analyzing digital evidence for legal or investigative purposes.

Kitploit recommended

Top tools

10 selected
autopsy preview#1

autopsy

GitHubsleuthkit/autopsy
3.3k4 months ago
sleuthkit preview#2

sleuthkit

GitHubsleuthkit/sleuthkit
3.1k24 days ago
volatility3 preview#3

volatility3

GitHubvolatilityfoundation/volatility3
4.3k3 days ago
plaso preview#4

plaso

GitHublog2timeline/plaso
2.2k15 days ago
bulk_extractor preview#5

bulk_extractor

GitHubsimsong/bulk_extractor
1.4k11 days ago
velociraptor preview#6

velociraptor

GitHubvelocidex/velociraptor
4.2k2 days ago
timesketch preview#7

timesketch

GitHubgoogle/timesketch
3.4k4 days ago
mvt preview#8

mvt

GitHubmvt-project/mvt
13.1k4 days ago
androidqf preview#9

androidqf

GitHubmvt-project/androidqf
23011 days ago
avml preview#10

avml

GitHubmicrosoft/avml
1.1k24 days ago
NewestRelevanceMost popularRecently updated
1206 results
ulexecve preview

ulexecve

GitHubanvilsecure/ulexecve

Executes arbitrary ELF binaries directly from memory on Linux without touching disk, enabling stealthy red-teaming and anti-forensic operations via a…

memory-forensicsexploitationpost-exploitation+3
2142 years ago
ALFA preview

ALFA

GitHubinvictus-ir/alfa

Automated forensic analysis tool for Google Workspace audit logs. Acquires all log types, maps events to MITRE ATT&CK Cloud Framework, and identifies…

forensicsdigital-forensicscloud-security+3
18316 days ago
pyOneNote preview

pyOneNote

GitHubdissectmalware/pyonenote

A python library to parse OneNote (.one) files

static-analysismalware-analysisdigital-forensics
1532 years ago
RustChain preview

RustChain

GitHubkudaes/rustchain

Hide memory artifacts using ROP and hardware breakpoints.

memory-forensicsexploitationred-teaming+1
1512 years ago
CVE-2021-30860 preview

CVE-2021-30860

GitHubjeffssh/cve-2021-30860

Collection of materials relating to FORCEDENTRY

ios-securityvulnerability-analysisexploitation+3
1012 years ago
python-haystack preview

python-haystack

GitHubtrolldbois/python-haystack

Process heap analysis framework - Windows/Linux - record type inference and forensics

memory-forensicsreverse-engineeringforensics+2
959 years ago
xwf-yara-scanner preview

xwf-yara-scanner

GitHubcrowdstrike/xwf-yara-scanner

Native YARA scanner X-Tension for X-Ways Forensics, enabling in-snapshot file scanning with multi-threaded RVS support, report table output, and no…

static-analysisforensicsmalware-analysis+1
931 year ago
CVE-2023-36427 preview

CVE-2023-36427

GitHubtandasat/cve-2023-36427

Report and exploit of CVE-2023-36427

memory-forensicsvulnerability-analysisexploitation+3
902 years ago
KslKatzBof preview

KslKatzBof

GitHubprinciplecheck/kslkatzbof

Beacon Object File for in-line LSASS credential extraction using the KslD.sys BYOVD technique. Extracts NT hashes and cleartext passwords from…

privilege-escalationmemory-forensicsexploitation+4
889 days ago
windbg-mcp preview

windbg-mcp

GitHubgengstah/windbg-mcp

An MCP (Model Context Protocol) server that turns all pybag Windows debugger functions into native MCP tools. It lets MCP-compatible clients (Claude…

dynamic-analysis-sandboxingmemory-forensicsvulnerability-analysis+7
864 months ago
awesome-reverse-engineering-and-malware-analysis preview

awesome-reverse-engineering-and-malware-analysis

GitHubzx41r/awesome-reverse-engineering-and-malware-analysis

A verified map of reverse engineering and malware analysis. Disassemblers, unpacking, exploit dev, fuzzing, DFIR, and the deep-cut writeups other…

reverse-engineeringfuzzingmalware-analysis+8
8214 days ago
mongobleed-detector preview

mongobleed-detector

GitHubneo23x0/mongobleed-detector

Detection Script for MongoBleed Exploitation

vulnerability-analysisscripting-automationforensics+5
818 months ago
Vol3xp preview

Vol3xp

GitHubmemoryforensics1/vol3xp

Volatility Explorer Suit (volatility 3)

memory-forensicsreverse-engineeringforensics+3
703 years ago
MemTracer preview

MemTracer

GitHubmayhamad/memtracer

Live memory analysis tool for detecting reflectively loaded .NET DLLs by scanning process memory regions for abnormal flags, page types, and PE…

memory-forensicsforensicsmalware-analysis+1
644 years ago
SessionView preview

SessionView

GitHublsecqt/sessionview

A portable C# utility for enumerating local and remote windows sessions

reconnaissanceforensicsinformation-gathering+3
578 months ago
processhacker-mcp preview

processhacker-mcp

GitHubillegal-instruction-co/processhacker-mcp

Runtime process analysis and memory hacking MCP server for AI agents. Supports dynamic extension loading, read-only mode, audit logging, and…

privilege-escalationdynamic-analysis-sandboxingmemory-forensics+7
506 months ago
macos-collector preview

macos-collector

GitHublethal-forensics/macos-collector

macos-collector - Automated Collection of macOS Forensic Artifacts for DFIR

persistence-mechanismsforensicsdigital-forensics+2
4911 days ago
libptmalloc preview

libptmalloc

GitHubnccgroup/libptmalloc

Heap analysis tooling for ptmalloc

memory-forensicsreverse-engineeringdebuggers+1
464 years ago
Previous1…505152…67Next