
ShadowNet
ShadowNet is an anonymous routing protocol that forces all connections (system-wide) to go through Tor while implementing Mixnet-like…

ShadowNet is an anonymous routing protocol that forces all connections (system-wide) to go through Tor while implementing Mixnet-like…

USB device connection forensics tool that traces physical device-to-computer relationships across local and domain networks, generating visual graphs…

Download and View Skype History Without Skype

Generates YARA rules from installed software on a running OS to baseline known software and find similar installations across digital forensic…

mboxShell. Fast terminal viewer for MBOX files of any size. Open, search and export emails from Gmail Takeout backups (50GB+) without loading them…

A python script which allows you to parse GeoLocation data from your Image files stored in a dataset.It also produces output in CSV file and also in…

Parses Windows .evtx logs to identify remote connections and public IPs by analyzing EventIDs related to remote logins and sessions.

NeuroCore is a native macOS application that visualizes the internal structure of binary files using a Hilbert Curve mapping and Shannon Entropy…

Collects, processes, and visualizes forensic data from cloud and on-premise machine clusters for incident response and digital investigations.

A tool to listen on a KNX bus via TPUART and the Calimero Project suite and to dump the data from the packets into a Wireshark-Compatible file hex…

This framework combines a set of existing open source tools into an integrated package that automates the forensics investigation process. It is able…

Detection of malicious VHD files for CVE-2025-24985

Simple shell script to perform forensic analysis of the Mozilla-Browsers cache (Firefox, Iceweasel and Seamonkey).

Forensic intelligence platform that analyzes files, correlates threat indicators, maps behavior to MITRE ATT&CK, and generates actionable security…

Hunt down social media accounts by username across social networks

Semantic search over videos using Gemini Embedding 2 or Qwen3-VL.

Dshell is a network forensic analysis framework.
