


Library to access the Windows Shell Item format

Interrogate is a proof-of-concept tool for identification of cryptographic keys in binary material (regardless of target operating system), first and…

Hex Viewer/Editor/Analyzer compatible with Linux/Windows/MacOS

A multi-platform GUI for bit-based analysis, processing, and visualization

bad stuffs by bad guys

Reconstructing a Dead USB Protocol: A Handheld's Secrets Unlocked by a Hot Knife, a multi-disciplinary journey to reviving a forgotten USB interface

A Mac OS X forensic utility which manages file system mounting in support of forensic procedures.

Hive v5 file decryption algorithm

analyzeMFT.py is designed to fully parse the MFT file from an NTFS filesystem and present the results as accurately as possible in multiple formats.

A gigabyte-per-second, multi-threaded file encryption engine. Achieves extreme throughput using a lock-free, triple-buffered io_uring pipeline, Rayon…


🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

C library and command-line toolkit for forensic EWF image handling: acquire, export, verify, recover, and mount evidence files in EnCase and SMART…

Find and redact secrets in AI coding agent histories (Claude Code, and more).

RdpCacheStitcher is a tool that supports forensic analysts in reconstructing useful images out of RDP cache bitmaps.

Crack ios Restriction PassCode in Python