
HackBrowserData
Extract and decrypt browser data, supporting multiple data types, runnable on various operating systems (macOS, Windows, Linux).

Extract and decrypt browser data, supporting multiple data types, runnable on various operating systems (macOS, Windows, Linux).

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

Network forensics writeup + tooling for a TryHackMe DFIR challenge: reverses a hex→Base64→XOR exfiltration chain from PCAP traffic, then recovers a…

Forensic toolkit and agent skills for investigating Rails Active Storage/libvips CVE-2026-66066: detects crafted blob indicators, exposure windows,…

Extracts browser-stored data such as refresh tokens, cookies, saved credentials, credit cards, autofill entries, browsing history, and bookmarks from…

High-performance OSINT/CTI framework for automated identity pivoting and risk analysis across 120+ sources.

Open source Baltic Sea shadow fleet tracker. 1200+ vessels, live AIS, cable proximity alerts. No cloud, no subscription, runs locally

Threat intelligence and incident response case study on LockBit ransomware exploiting CVE-2023-4966 (Citrix Bleed).


Extract data from modern Chrome versions, including refresh tokens, cookies, saved credentials, autofill data, browsing history, and bookmarks

Lack of argument sanitization leading to password leakage in Ghostscript PDF versions up to 10.05.0.

Short program that demonstrates the vulnerability CVE-2024-33901 in KeePassXC version 2.7.7

A python script for digital image steganography using Fast Fourier Transform.

GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.

Python program to steganography files into images using the Least Significant Bit.

Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotely

A list of covert channels and steganography/steganalysis resources (books, papers & tools)