
yellowkey-bitlocker
Manage and recover BitLocker encrypted drives with this tool for Windows 11 recovery key management and educational study of CVE-2026-45585.

Manage and recover BitLocker encrypted drives with this tool for Windows 11 recovery key management and educational study of CVE-2026-45585.


Forensic library and CLI toolkit for analyzing disk and file system images, recovering deleted data, generating timelines, and validating evidence…

Library to access the Windows Shell Item format

Parallel backup and restore solution for PostgreSQL with encryption, delta restore, and multi-cloud object store support for enterprise disaster…

Digital forensics engine that parses logs, files, and system artifacts to build super timelines, enabling chronological event correlation for…

Mediatek Flash and Repair Utility

High-performance, streaming-first container format with per-block codec polymorphism and robust data recoverability. Reference implementation in Rust.

Find your device and control it remotely. Works over SMS, instant messengers, or FMD Server's web interface. A secure open source alternative to…

Find and redact secrets in AI coding agent histories (Claude Code, and more).

Library and tools to access the Volume Shadow Snapshot (VSS) format

Manage WhatsApp .crypt12, .crypt14 and .crypt15 files.

Library and tools to access the Virtual Hard Disk (VHD) image format

androidqf (Android Quick Forensics) helps quickly gathering forensic evidence from Android devices, in order to identify potential traces of…

This is the development tree. Production downloads are at:

Library and tools to access the Windows New Technology File System (NTFS)

Universal Windows extraction tool that detects unknown files and routes them to the right bundled extractor.

Walk any memory dump. Find what's hidden. Linux + Windows kernel forensics from a single static Rust binary — no Python required.