
fatcat
FAT filesystems explore, extract, repair, and forensic tool

FAT filesystems explore, extract, repair, and forensic tool

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

F*ck file system - cli file search tool that bypasses OS kernel and reads your disc directlry

RdpCacheStitcher is a tool that supports forensic analysts in reconstructing useful images out of RDP cache bitmaps.

Tool to extract the $UsnJrnl from an NTFS volume

Python tool that parses the NTFS $MFT to copy locked files during incident response, bypassing OS locks by reading raw disk locations. Supports…

SentinelNav: zero-dependency, pure Python binary visualization and forensics tool.

Binary and Directory tree comparison tool using Fuzzy Hashing

Universal Windows extraction tool that detects unknown files and routes them to the right bundled extractor.

Interrogate is a proof-of-concept tool for identification of cryptographic keys in binary material (regardless of target operating system), first and…

A python tool that will extract exif data from picture with two methods

GUI forensic tool for acquiring and analyzing Telegram data from Android devices. Parses messages, media, and metadata; generates integrity-verified…

A command-line tool for securely backing up, restoring, and verifying secrets using interoperable standards like age encryption and coreutils,…

Manage and recover BitLocker encrypted drives with this tool for Windows 11 recovery key management and educational study of CVE-2026-45585.

Hash database builder and reverse lookup tool — SHA256, RIPEMD160, Keccak256, BLAKE3 and more

Gallery Vault dump recovery tool with automated discovery, key derivation and automatic media restoration.

Detection and restoration of Windows Snipping Tool PNG captures vulnerable to CVE-2023-28303

Windows memory forensics tool for dumping files from process memory regions, searching byte patterns (PDF, JPG, SWF), and performing live process…