Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Categories

Digital Forensics

Tools for acquiring, preserving, and analyzing digital evidence for legal or investigative purposes.

Kitploit recommended

Top tools

10 selected
autopsy preview#1

autopsy

GitHubsleuthkit/autopsy
3.3k4 months ago
sleuthkit preview#2

sleuthkit

GitHubsleuthkit/sleuthkit
3.1k22 days ago
volatility3 preview#3

volatility3

GitHubvolatilityfoundation/volatility3
4.3k1 day ago
plaso preview#4

plaso

GitHublog2timeline/plaso
2.2k13 days ago
bulk_extractor preview#5

bulk_extractor

GitHubsimsong/bulk_extractor
1.4k9 days ago
velociraptor preview#6

velociraptor

GitHubvelocidex/velociraptor
4.2k6h 3m ago
timesketch preview#7

timesketch

GitHubgoogle/timesketch
3.4k2 days ago
mvt preview#8

mvt

GitHubmvt-project/mvt
13.1k1 day ago
androidqf preview#9

androidqf

GitHubmvt-project/androidqf
2309 days ago
avml preview#10

avml

GitHubmicrosoft/avml
1.1k21 days ago
NewestRelevanceMost popularRecently updated
1193 results
Snap-Scraper preview

Snap-Scraper

GitHubrhematt/snap-scraper

Extracts and downloads Snap Map media by coordinates for OSINT, forensic analysis, and research. Supports metadata logging and bulk download.

osintreconnaissanceforensics+3
1143 years ago
CAPEv2 preview

CAPEv2

GitHubkevoreilly/capev2

Malware Configuration And Payload Extraction

dynamic-analysis-sandboxingmemory-forensicsvulnerability-analysis+6
3.4k6h 36m ago
excelpeek preview

excelpeek

GitHubslaughterjames/excelpeek

Static analysis tool for investigating potentially malicious Microsoft Excel files, extracting metadata, macros, and embedded objects to aid digital…

static-analysisforensicsmalware-analysis+1
384 years ago
wireshark-forensics-plugin preview

wireshark-forensics-plugin

GitHubrjbhide/wireshark-forensics-plugin

Wireshark plugin that correlates network traffic with threat intelligence, asset tags, and vulnerability data to accelerate forensic analysis of PCAP…

packet-sniffing-analysisvulnerability-analysisnetwork-forensics+3
1024 years ago
Registry-Spy preview

Registry-Spy

GitHubandyjsmith/registry-spy

Cross-platform registry browser for raw Windows registry files

forensicsdigital-forensics
1193 years ago
heaptrace preview

heaptrace

GitHubarinerron/heaptrace

helps visualize heap operations for pwn and debugging

memory-forensicsdebuggersctf+1
3303 years ago
ThePhish preview

ThePhish

GitHubemalderson/thephish

ThePhish: an automated phishing email analysis tool

ioc-managementphishing-toolsphishing+5
1.4k2 years ago
autotimeliner preview

autotimeliner

GitHubandreafortuna/autotimeliner

Automagically extract forensic timeline from volatile memory dump

memory-forensicsforensicsdigital-forensics+1
1336 months ago
digital-forensics-lab preview

digital-forensics-lab

GitHubfrankwxu/digital-forensics-lab

Free hands-on digital forensics labs for students and faculty

disk-forensicspassword-crackingmemory-forensics+9
2.9k10h 30m ago
PMAT-labs preview

PMAT-labs

GitHubhuskyhacks/pmat-labs

Labs for Practical Malware Analysis & Triage

reverse-engineeringforensicsmalware-analysis+3
1.1k5 months ago
DetectionLabELK preview

DetectionLabELK

GitHubcyberdefenders/detectionlabelk

DetectionLabELK is a fork from DetectionLab with ELK stack instead of Splunk.

defensive-toolsosintconfiguration-auditing+7
5755 years ago
ThreadStackSpoofer preview

ThreadStackSpoofer

GitHubmgeeky/threadstackspoofer

Thread Stack Spoofing - PoC for an advanced In-Memory evasion technique allowing to better hide injected shellcode's memory allocation from scanners…

penetration-testing-frameworksexploit-frameworksmemory-forensics+4
1.2k4 years ago
TrueTree preview

TrueTree

GitHubthemittenmac/truetree

A command line tool for pstree-like output on macOS with additional pid capturing capabilities

forensicsdigital-forensicsthreat-intelligence+1
2852 years ago
IRTriage preview

IRTriage

GitHubajmartel/irtriage

Incident Response Triage - Windows Evidence Collection for Forensic Analysis

memory-forensicsforensicsdigital-forensics+1
13910 years ago
ExtractUsnJrnl preview

ExtractUsnJrnl

GitHubjschicht/extractusnjrnl

Tool to extract the $UsnJrnl from an NTFS volume

disk-forensicsforensicsdata-recovery+1
1107 years ago
RawCopy preview

RawCopy

GitHubjschicht/rawcopy

Commandline low level file extractor for NTFS

disk-forensicsforensicsdata-recovery+1
3187 years ago
tscopy preview

tscopy

GitHubtrustedsec/tscopy

Python tool that parses the NTFS $MFT to copy locked files during incident response, bypassing OS locks by reading raw disk locations. Supports…

disk-forensicsforensicsdata-recovery+2
1034 years ago
WinPmem preview

WinPmem

GitHubvelocidex/winpmem

The multi-platform memory acquisition tool.

memory-forensicsforensicsdigital-forensics+1
1.0k11 months ago
Previous1…626364…67Next