
andriller
📱 Andriller - is software utility with a collection of forensic tools for smartphones. It performs read-only, forensically sound, non-destructive…

📱 Andriller - is software utility with a collection of forensic tools for smartphones. It performs read-only, forensically sound, non-destructive…

Filesystem monitor tool for Linux/Android iOS/macOS

Portable forensic acquisition tool for Android devices that collects relevant data via USB debugging to identify potential spyware or compromise…

A robust digital forensics tool for extracting and analyzing Google Chrome artifacts from Android devices

Forensic collection and analysis toolkit for Android and iOS devices to identify potential compromise by known spyware using public and private…

Forensic Analysis for Mobile Apps (FAMA) -- module for the Autopsy Forensic Browser

Graphical forensic toolkit for parsing, decrypting, and extracting WhatsApp data from Android and iOS devices, including Google Drive and iCloud…

Blackbox Protobuf is a set of tools for working with encoded Protocol Buffers (protobuf) without the matching protobuf definition.

Encrypted peer-to-peer mesh VPN for remote mobile forensics, enabling wireless ADB and libimobiledevice acquisition, network monitoring, and…

Linux Distro for Mobile Security, Malware Analysis, and Forensics

android location service cache dumper

Framework for hashing declared permissions in Chromium extensions and APKs, enabling clustering, hunting, and pivoting across potentially malicious…

Utility for recovering ES File Explorer encrypted files (.eslock)

Open source Android Forensics app and framework

A tool for finding and analyzing private (and public) key files, including support for Android APK files.

Bash script to extract data from a "chekcra1ned" iOS device

Collection of materials relating to FORCEDENTRY