
envocabulary
Trace every shell environment variable to its exact file and line origin. Audit shell configs for dead entries, duplicates, and orphaned files across…

Trace every shell environment variable to its exact file and line origin. Audit shell configs for dead entries, duplicates, and orphaned files across…

truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)

Turn any collection of documents into a knowledge graph. Extract entities and relationships via LLM, deduplicate with your approval. Map domains,…

F*ck file system - cli file search tool that bypasses OS kernel and reads your disc directlry

Containerized network traffic analysis suite ingesting PCAP, Zeek logs, and Suricata alerts for automated normalization, enrichment, and correlation…

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata…

Telegram OSINT, scraping and archival as a local web app. Multi-account collection, profile lookup with historic photos and change diffs, ten export…

Read-only WordPress plugin that scans for artifacts of the wp2shell exploit chain (CVE-2026-63030 / CVE-2026-60137)

« usbkill » is an anti-forensic kill-switch that waits for a change on your USB ports and then immediately shuts down your computer.

Recovers lost partitions and repairs boot sectors; carves 480+ file formats from damaged disks and filesystems for data recovery and forensic use.

Python script that will extract all saved passwords from your google chrome database on windows only

Download and View Skype History Without Skype

Analyzes .pcapng files to generate HTML reports for network traffic inspection and forensic review.

Labtainers: A Docker-based cyber lab framework

Interactively find and recover deleted or :point_right: overwritten :point_left: files from your terminal

Self-hosted incident response platform with ticket management, automated reaction playbooks, task tracking, and dashboards for streamlining alert…


A python application designed to remotely dump RAM of a Linux client and create a volatility profile for later analysis on your local host.