
HiveV5_keystream_decryptor
bad stuffs by bad guys

bad stuffs by bad guys

Manage BitLocker recovery keys, unlock encrypted drives, and monitor encryption status with this lightweight Windows utility.

Autopsy® is a digital forensics platform and graphical interface to The Sleuth Kit® and other digital forensics tools. It can be used by law…

PowerShell toolkit that extracts locked Windows files (SAM, SYSTEM, NTDS, ...) using MFT parsing and raw disk reads

Use to copy a file from an NTFS partitioned volume by reading the raw volume and parsing the NTFS structures.

Library to access the Windows Shell Item format

A Mac OS X forensic utility which manages file system mounting in support of forensic procedures.

This is the development tree. Production downloads are at:

A python tool that will extract exif data from picture with two methods

Cellebrite Physical Analyzer python scripts to aid analysts with extended functionality

analyzeMFT.py is designed to fully parse the MFT file from an NTFS filesystem and present the results as accurately as possible in multiple formats.

CVE-2023-21036 detection in Go

X-Ways Acropalypse extension detects CVE-2023-21036 in common images

Detection and restoration of Windows Snipping Tool PNG captures vulnerable to CVE-2023-28303

F*ck file system - cli file search tool that bypasses OS kernel and reads your disc directlry

Detection and sanitization for Acropalypse Now - CVE-2023-21036

Hash database builder and reverse lookup tool — SHA256, RIPEMD160, Keccak256, BLAKE3 and more