
timesketch
Collaborative forensic timeline analysis platform for ingesting, searching, and annotating event logs to support incident response and DFIR…

Collaborative forensic timeline analysis platform for ingesting, searching, and annotating event logs to support incident response and DFIR…

Manage and recover BitLocker encrypted drives with this tool for Windows 11 recovery key management and educational study of CVE-2026-45585.

🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.

This is the development tree. Production downloads are at:

Find and redact secrets in AI coding agent histories (Claude Code, and more).


Manage BitLocker recovery keys, unlock encrypted drives, and monitor encryption status with this lightweight Windows utility.


Digital forensics engine that parses logs, files, and system artifacts to build super timelines, enabling chronological event correlation for…

Manage BitLocker encrypted drives on Windows. Extract recovery keys, check encryption status, and apply security mitigations for CVE-2026-45585.

Hex Viewer/Editor/Analyzer compatible with Linux/Windows/MacOS

Universal Windows extraction tool that detects unknown files and routes them to the right bundled extractor.


Tools and Techniques for Blue Team / Incident Response

Static-first research tool for unpacking Nuitka-compiled binaries: extracts constants, modules, recovers .pyc files, and generates analysis reports.

mboxShell. Fast terminal viewer for MBOX files of any size. Open, search and export emails from Gmail Takeout backups (50GB+) without loading them…

Parallel backup and restore solution for PostgreSQL with encryption, delta restore, and multi-cloud object store support for enterprise disaster…

Walk any memory dump. Find what's hidden. Linux + Windows kernel forensics from a single static Rust binary — no Python required.