Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Categories

Digital Forensics

Tools for acquiring, preserving, and analyzing digital evidence for legal or investigative purposes.

Kitploit recommended

Top tools

10 selected
autopsy preview#1

autopsy

GitHubsleuthkit/autopsy
3.3k4 months ago
sleuthkit preview#2

sleuthkit

GitHubsleuthkit/sleuthkit
3.1k22 days ago
volatility3 preview#3

volatility3

GitHubvolatilityfoundation/volatility3
4.3k1 day ago
plaso preview#4

plaso

GitHublog2timeline/plaso
2.2k13 days ago
bulk_extractor preview#5

bulk_extractor

GitHubsimsong/bulk_extractor
1.4k9 days ago
velociraptor preview#6

velociraptor

GitHubvelocidex/velociraptor
4.2k7h 41m ago
timesketch preview#7

timesketch

GitHubgoogle/timesketch
3.4k2 days ago
mvt preview#8

mvt

GitHubmvt-project/mvt
13.1k1 day ago
androidqf preview#9

androidqf

GitHubmvt-project/androidqf
2309 days ago
avml preview#10

avml

GitHubmicrosoft/avml
1.1k21 days ago
NewestRelevanceMost popularRecently updated
1195 results
LEAF preview

LEAF

GitHubalex-cart/leaf

Linux Evidence Acquisition Framework

disk-forensicsioc-managementmemory-forensics+5
1201 year ago
RogueAssemblyHunter preview

RogueAssemblyHunter

GitHubbohops/rogueassemblyhunter

Rogue Assembly Hunter is a utility for discovering 'interesting' .NET CLR modules in running processes.

defensive-toolsmemory-forensicsforensics+2
1204 years ago
iris-web preview

iris-web

GitHubdfir-iris/iris-web

Collaborative Incident Response platform

forensicsdigital-forensicsincident-response
1.5k1 year ago
KNX-Bus-Dump preview

KNX-Bus-Dump

GitHubchrism09/knx-bus-dump

A tool to listen on a KNX bus via TPUART and the Calimero Project suite and to dump the data from the packets into a Wireshark-Compatible file hex…

packet-sniffing-analysisiot-securityforensics+3
124 years ago
Bryobio preview

Bryobio

GitHubemrekybs/bryobio

It was developed to speed up the processes of SOC Analysts during analysis

packet-sniffing-analysisvulnerability-analysisnetwork-forensics+3
485 months ago
hindsight preview

hindsight

GitHubryandfir/hindsight

Browser forensics tool for Google Chrome, other Chromium-based browsers, and Mozilla Firefox

osintforensicsinformation-gathering+1
1.5k2 days ago
RecoverPy preview

RecoverPy

GitHubpablolec/recoverpy

Interactively find and recover deleted or :point_right: overwritten :point_left: files from your terminal

disk-forensicsforensicsdata-recovery+1
1.8k1 month ago
Aurora-Incident-Response preview

Aurora-Incident-Response

GitHubcyb3rfox/aurora-incident-response

Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders

forensicsinformation-gatheringdigital-forensics+3
1.1k3 years ago
ma2tl preview

ma2tl

GitHubmnrkbys/ma2tl

macOS forensic timeline generator using the analysis result DBs of mac_apt

forensicsdigital-forensics
953 years ago
hollows_hunter preview

hollows_hunter

GitHubhasherezade/hollows_hunter

Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory…

defensive-toolsmemory-forensicsforensics+2
2.4k3 months ago
whatfiles preview

whatfiles

GitHubspieglt/whatfiles

Log what files are accessed by any Linux process

general-purpose-utilitiesforensicsdigital-forensics
9462 years ago
WELA preview

WELA

GitHubyamato-security/wela

Audits Windows event log settings against best-practice guidelines and Sigma-rule detectability, with automated configuration for DFIR readiness.

configuration-auditingdigital-forensicsincident-response+1
1188 days ago
factual-rules-generator preview

factual-rules-generator

GitHubcircl/factual-rules-generator

Generates YARA rules from installed software on a running OS to baseline known software and find similar installations across digital forensic…

vulnerability-analysisforensicsinformation-gathering+1
754 years ago
BlueTeam.Lab preview

BlueTeam.Lab

GitHubop7ic/blueteam.lab

Blue Team detection lab created with Terraform and Ansible in Azure.

defensive-toolsconfiguration-auditingdigital-forensics+7
1871 year ago
Fennec preview

Fennec

GitHubabdulrhmanalfaifi/fennec

Artifact collection tool for *nix systems

forensicsinformation-gatheringdigital-forensics+3
2202 years ago
hayabusa preview

hayabusa

GitHubyamato-security/hayabusa

Multi-threaded Windows event log forensics timeline generator and threat hunting tool with full Sigma rule support, producing CSV/JSON timelines for…

forensicsdigital-forensicsthreat-intelligence+2
3.3k5 days ago
lmg preview

lmg

GitHubhalpomeranz/lmg

Script for automating Linux memory capture and analysis

memory-forensicsforensicsdigital-forensics+1
2756 years ago
catalyst preview

catalyst

GitHubsecuritybrewery/catalyst

Self-hosted incident response platform with ticket management, automated reaction playbooks, task tracking, and dashboards for streamlining alert…

defensive-toolsdigital-forensicsincident-response
5361 month ago
Previous1…616263…67Next