Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Digital Forensics | Kitploit
Categories

Digital Forensics

Tools for acquiring, preserving, and analyzing digital evidence for legal or investigative purposes.

Kitploit recommended

Top tools

10 selected
autopsy preview#1

autopsy

GitHubsleuthkit/autopsy
3.3k4 months ago
sleuthkit preview#2

sleuthkit

GitHubsleuthkit/sleuthkit
3.1k21 days ago
volatility3 preview#3

volatility3

GitHubvolatilityfoundation/volatility3
4.3k14h 13m ago
plaso preview#4

plaso

GitHublog2timeline/plaso
2.1k12 days ago
bulk_extractor preview#5

bulk_extractor

GitHubsimsong/bulk_extractor
1.4k8 days ago
velociraptor preview#6

velociraptor

GitHubvelocidex/velociraptor
4.2k13h 28m ago
timesketch preview#7

timesketch

GitHubgoogle/timesketch
3.4k1 day ago
mvt preview#8

mvt

GitHubmvt-project/mvt
13.0k17h 52m ago
androidqf preview#9

androidqf

GitHubmvt-project/androidqf
2307 days ago
avml preview#10

avml

GitHubmicrosoft/avml
1.1k20 days ago
NewestRelevanceMost popularRecently updated
1191 results
CVE-2026-84118-who-labeled-the-crit-as-a-high preview

CVE-2026-84118-who-labeled-the-crit-as-a-high

GitHubsneakynachos/cve-2026-84118-who-labeled-the-crit-as-a-high

Proof-of-concept for CVE-2026-84118, a SpiderMonkey GC use-after-free leading to out-of-bounds read/write and potential code execution. Includes…

memory-forensicsvulnerability-analysisexploitation+2
120h 39m ago
security-baseline-ubuntu preview

security-baseline-ubuntu

GitHubeugexo/security-baseline-ubuntu

Production-grade Security Baseline & Hardening Guide for Ubuntu 24.04/26.04 LTS. Kernel isolation, custom AppArmor/Firejail 0.9.80, Rootless Docker,…

vulnerability-scannersencryption-decryption-toolsconfiguration-auditing+6
112 days ago
DarkTortilla-RAT-Telegram-Exfiltration-Payload-Extraction-Analysis preview

DarkTortilla-RAT-Telegram-Exfiltration-Payload-Extraction-Analysis

GitHubkaandemir993/darktortilla-rat-telegram-exfiltration-payload-extraction-analysis

Reverse engineering analysis of DarkTortilla RAT, a sophisticated malware that steals credit card data, decrypts browser passwords, and exfiltrates…

password-attacksreverse-engineeringdata-exfiltration+4
3 days ago
umbra preview

umbra

GitHubymsniper/umbra

External read-only game overlay for Linux. Derived offsets, composed skeletons, optional kernel module for ptrace-independent memory reads and…

memory-forensicsexploitationreverse-engineering+1
33 days ago
citrix-netscaler-triage preview

citrix-netscaler-triage

GitHubfox-it/citrix-netscaler-triage

Forensic triage toolkit for Citrix NetScaler devices, featuring a Dissect-based IOC scanner for webshells, timestomping, and suspicious binaries,…

ioc-managementvulnerability-scannersweb-security+3
749 months ago
psa-2026-00043-recovery preview

psa-2026-00043-recovery

GitHubdisqualifier/psa-2026-00043-recovery

Recovery notes for proxmox advisory ID: PSA-2026-00043-1 (CVE-2023-54391)

cloud-infrastructure-securityvulnerability-analysisforensics+3
5 days ago
zimbra-cve-2026-73570-ir preview

zimbra-cve-2026-73570-ir

GitHubdahnutz/zimbra-cve-2026-73570-ir

Detection-first incident-response toolkit for Zimbra administrators investigating CVE-2026-73570. Searches logs for exploit indicators, examines…

defensive-toolsioc-managementvulnerability-analysis+4
5 days ago
EVTX-ATTACK-SAMPLES preview

EVTX-ATTACK-SAMPLES

GitHubsbousseaden/evtx-attack-samples

Curated collection of Windows EVTX attack samples mapped to MITRE ATT&CK techniques, designed for testing detection scripts, DFIR training, and…

digital-forensicsthreat-intelligenceeducation+2
2.6k3 years ago
RemotePSpy preview

RemotePSpy

GitHubwithsecurelabs/remotepspy

Live monitoring tool for remote PowerShell sessions using ETW to capture and decode WinRM/PSRP protocol, providing command execution traces and…

defensive-toolsnetwork-securitydigital-forensics+3
196 years ago
ReflectiveDLLInjection preview

ReflectiveDLLInjection

GitHubstephenfewer/reflectivedllinjection

Reflective DLL injection is a library injection technique in which the concept of reflective programming is employed to perform the loading of a…

memory-forensicsexploitationpost-exploitation+2
3.4k4 years ago
DFIR-LABS preview

DFIR-LABS

GitHubazr43lkn1ght/dfir-labs

Hands-on DFIR challenges covering digital forensics, incident response, malware analysis, and threat hunting with CTF-style flags and real-world…

disk-forensicsmemory-forensicsnetwork-forensics+6
5799 months ago
teamcity-cve-2026-63077-remediation preview

teamcity-cve-2026-63077-remediation

GitHubbakos-sandor-nx/teamcity-cve-2026-63077-remediation

JetBrains TeamCity On-Premises CVE-2026-63077 Emergency Hardening & Patch Runbook Package

cloud-infrastructure-securityconfiguration-auditingnetwork-security+6
1 month ago
vol-rs preview

vol-rs

GitHubdaffainfo/vol-rs

Volatility 3 ported to Rust. Same output, much faster.

memory-forensicsvulnerability-analysisforensics+3
17110 days ago
ecdsa-private-key-recovery preview

ecdsa-private-key-recovery

GitHubbarnew-st/ecdsa-private-key-recovery

A cryptographic research tool for analyzing signature vulnerabilities

vulnerability-analysisexploitationdigital-forensics+1
219 months ago
CVE-2024-49138-SOC-Investigation preview

CVE-2024-49138-SOC-Investigation

GitHubadisasoc/cve-2024-49138-soc-investigation

SOC investigation of CVE-2024-49138 exploitation involving brute-force activity, PowerShell execution, malicious payload analysis, privilege…

privilege-escalationmalware-analysisdigital-forensics+4
7 days ago
KsDumper-11 preview

KsDumper-11

GitHubmastercodeon314/ksdumper-11

A revival of the classic and legendary KsDumper

memory-forensicsexploitationreverse-engineering+1
5861 year ago
CVE-2023-32784-kdbxpassdmp preview

CVE-2023-32784-kdbxpassdmp

GitHubamperclock/cve-2023-32784-kdbxpassdmp

Retrieves the master password from Keepass memory dump, using a hint of bruteforce.

memory-forensicspassword-attacksvulnerability-analysis+3
3 months ago
ESFang preview

ESFang

GitHubwithsecurelabs/esfang

ESF modular ingestion tool for development and research.

forensicsdigital-forensicsincident-response+1
384 years ago
Previous12…67Next