#1Digital forensics, evidence collection, timeline analysis, and incident investigation tools.
Kitploit recommended

A frida tool to dump dex in memory to support security engineers analyzing malware.

Depix is a PoC for a technique to recover plaintext from pixelized screenshots.


⭐ ⭐ Distributed tcpdump for cloud native environments ⭐ ⭐

A forensic evidence collection & analysis toolkit for OS X

VirusTotal Wanna Be - Now with 100% more Hipster

Stenographer is a packet capture solution which aims to quickly spool all packets to disk, then provide simple, fast access to subsets of those…

Binary analysis and management framework

A framework that create an advanced stealthy dropper that bypass most AVs and have a lot of tricks

Python module for viewing Portable Executable (PE) files in a tree-view using pefile and PyQt5. Can also be used with IDA Pro and Rekall to dump…

Distributed & real time digital forensics at the speed of the cloud

Tracking history of USB events on GNU/Linux

Python program to steganography files into images using the Least Significant Bit.

C# wrapper for ETW that serializes kernel and user-mode event data to JSON for threat hunting, malware analysis, and incident response, with Yara…


Graph platform for Detection and Response

StalkPhish - The Phishing kits stalker, harvesting phishing kits for investigations.