
hashdeep
Cross-platform hashing toolset for computing message digests (MD5, SHA-1, SHA-256, Tiger, Whirlpool) with recursive directory traversal and file…

Cross-platform hashing toolset for computing message digests (MD5, SHA-1, SHA-256, Tiger, Whirlpool) with recursive directory traversal and file…

A Mac OS X forensic utility which manages file system mounting in support of forensic procedures.

FAT filesystems explore, extract, repair, and forensic tool

F*ck file system - cli file search tool that bypasses OS kernel and reads your disc directlry

Detection and sanitization for Acropalypse Now - CVE-2023-21036

bad stuffs by bad guys

A python tool that will extract exif data from picture with two methods


Cryptographically verifiable web archiving. Playwright capture → SHA-256 Merkle hash → Bitcoin-anchored OpenTimestamps → permanent Arweave storage.

Manage BitLocker recovery keys, unlock encrypted drives, and monitor encryption status with this lightweight Windows utility.

Hash database builder and reverse lookup tool — SHA256, RIPEMD160, Keccak256, BLAKE3 and more

CVE-2023-21036 detection in Go


This is the development tree. Production downloads are at:

Collection of forensic tools

PowerShell toolkit that extracts locked Windows files (SAM, SYSTEM, NTDS, ...) using MFT parsing and raw disk reads

Commandline low level file extractor for NTFS

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files