
mvt
Forensic collection and analysis toolkit for Android and iOS devices to identify potential compromise by known spyware using public and private…

Forensic collection and analysis toolkit for Android and iOS devices to identify potential compromise by known spyware using public and private…

Telegram OSINT, scraping and archival as a local web app. Multi-account collection, profile lookup with historic photos and change diffs, ten export…

A privacy-first app that strips AI watermarks from content you own.

Framework for hashing declared permissions in Chromium extensions and APKs, enabling clustering, hunting, and pivoting across potentially malicious…

Repository of attack and defensive information for Business Email Compromise investigations

Android Connections Forensics

Blackbox Protobuf is a set of tools for working with encoded Protocol Buffers (protobuf) without the matching protobuf definition.

Manage WhatsApp .crypt12, .crypt14 and .crypt15 files.

Utility for recovering ES File Explorer encrypted files (.eslock)


android location service cache dumper

Linux Distro for Mobile Security, Malware Analysis, and Forensics

Vulnerable web application to test CVE-2021-44228 / log4shell and forensic artifacts from an example attack

Extract a concerning amount of user information from Unisoc ZTE devices using CVE-2022-38694.

A robust digital forensics tool for extracting and analyzing Google Chrome artifacts from Android devices

Gallery Vault dump recovery tool with automated discovery, key derivation and automatic media restoration.

reverse engineering Gemini's SynthID detection

androidqf (Android Quick Forensics) helps quickly gathering forensic evidence from Android devices, in order to identify potential traces of…