
wireshark
Capture and analyze network traffic with deep packet inspection, protocol decoding across hundreds of protocols, and capture-file support for…

Capture and analyze network traffic with deep packet inspection, protocol decoding across hundreds of protocols, and capture-file support for…

Semantic search over videos using Gemini Embedding 2 or Qwen3-VL.

Advanced framework for extracting digital artifacts from volatile memory (RAM) samples, enabling deep forensic analysis of system runtime state…

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

Extract a concerning amount of user information from Unisoc ZTE devices using CVE-2022-38694.

Malware analysis from the domain goxlr.net

A simple, reliable and reasonably fast network capture analyzer.

Portable, dependency-free incident response tool that automates forensic artifact collection from Unix-like systems, including memory acquisition,…

Small toolkit for extracting information and dumping sensitive strings from Windows processes

A tool to use novel locations to extract metadata from Office documents.

Modular incident response toolkit for collecting forensic data from potentially infected macOS endpoints, capturing browser artifacts, persistence…

Extracts and exports certificate information from digitally signed PE files using Python and pefile, enabling forensic analysis of code-signing…

A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365

Generates YARA rules from installed software on a running OS to baseline known software and find similar installations across digital forensic…

An forensics tool to help aid in the investigation of spoofed emails based off the email headers.

A python script which allows you to parse GeoLocation data from your Image files stored in a dataset.It also produces output in CSV file and also in…

Imago is a python tool that extract digital evidences from images.