
androidqf
Portable forensic acquisition tool for Android devices that collects relevant data via USB debugging to identify potential spyware or compromise…

Portable forensic acquisition tool for Android devices that collects relevant data via USB debugging to identify potential spyware or compromise…

android location service cache dumper

Gallery Vault dump recovery tool with automated discovery, key derivation and automatic media restoration.

A tool for finding and analyzing private (and public) key files, including support for Android APK files.

Forensic collection and analysis toolkit for Android and iOS devices to identify potential compromise by known spyware using public and private…

Graphical forensic toolkit for parsing, decrypting, and extracting WhatsApp data from Android and iOS devices, including Google Drive and iCloud…

Manage WhatsApp .crypt12, .crypt14 and .crypt15 files.

📱 Andriller - is software utility with a collection of forensic tools for smartphones. It performs read-only, forensically sound, non-destructive…

Filesystem monitor tool for Linux/Android iOS/macOS

androidqf (Android Quick Forensics) helps quickly gathering forensic evidence from Android devices, in order to identify potential traces of…

Extract WhatsApp private key from any non-rooted Android device (Android 7+ supported)

Encrypted peer-to-peer mesh VPN for remote mobile forensics, enabling wireless ADB and libimobiledevice acquisition, network monitoring, and…


Linux Distro for Mobile Security, Malware Analysis, and Forensics

Framework for hashing declared permissions in Chromium extensions and APKs, enabling clustering, hunting, and pivoting across potentially malicious…

Breakdown of a c2-network of chinese beamers - SilentSDK-Analysis

Utility for recovering ES File Explorer encrypted files (.eslock)

Extract a concerning amount of user information from Unisoc ZTE devices using CVE-2022-38694.