
unblob
Extract files from any kind of container formats

Extract files from any kind of container formats

Interactively find and recover deleted or :point_right: overwritten :point_left: files from your terminal

Manage WhatsApp .crypt12, .crypt14 and .crypt15 files.

Cross-platform hashing toolset for computing message digests (MD5, SHA-1, SHA-256, Tiger, Whirlpool) with recursive directory traversal and file…

A tool for forensic file system reconstruction.

Forensics tool for NTFS (parser, mft, bitlocker, deleted files)

Offline, open-source web app for passkey-based file encryption and sharing. AES-256-GCM/HPKE, no cloud, no accounts; encrypt to recipients with…

Digital forensics suite for DJI drones that parses telemetry files, extracts hidden data via steganography, visualizes flight paths, and detects…

Commandline low level file extractor for NTFS

PowerShell toolkit that extracts locked Windows files (SAM, SYSTEM, NTDS, ...) using MFT parsing and raw disk reads

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

F*ck file system - cli file search tool that bypasses OS kernel and reads your disc directlry

WhatsApp Forensic Tool

Static-first research tool for unpacking Nuitka-compiled binaries: extracts constants, modules, recovers .pyc files, and generates analysis reports.


Python tool that parses the NTFS $MFT to copy locked files during incident response, bypassing OS locks by reading raw disk locations. Supports…

Search and extract blob files on the Ethereum Blockchain network

Universal Windows extraction tool that detects unknown files and routes them to the right bundled extractor.