
Refloow-Geo-Forensics
❤️ Free batch image & video geolocation digital forensics tool. Automatically extract EXIF data, visualize GPS coordinates on maps, and reconstruct…

❤️ Free batch image & video geolocation digital forensics tool. Automatically extract EXIF data, visualize GPS coordinates on maps, and reconstruct…

Current links from the OSINT Inception start-me project

Real-time Windows system monitor with advanced process, network, and disk analysis, stack trace debugging, malware detection, and service management.…

Cortex: a Powerful Observable Analysis and Active Response Engine

Multi-module offensive security toolkit for SOCKS5 proxy chaining, port scanning, DNS enumeration, hash cracking, reverse shell generation,…

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

High-performance OSINT/CTI framework for automated identity pivoting and risk analysis across 120+ sources.

Automated steganography detection tool that scans websites, web servers, and local directories using AI-driven object/text recognition and deep file…

Read, understand and silence the Windows GDID device identifier (the ID that tracked a hacker through a VPN). Verified on a real Win11 VM. Honest: it…

Telegram OSINT, scraping and archival as a local web app. Multi-account collection, profile lookup with historic photos and change diffs, ten export…

Browser forensics tool for Google Chrome, other Chromium-based browsers, and Mozilla Firefox

A multifaceted security tool which leverages Public GitHub REST APIs for OSINT, Forensics, Pentesting and more.

Capture and analyze network traffic with deep packet inspection, protocol decoding across hundreds of protocols, and capture-file support for…

Bash tool used for proactive detection of malicious activity on macOS systems.

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Forensics artefact collection tool for systems running Microsoft Windows

PowerShell tool that extracts Active Directory artifacts via LDAP or ADWS and generates Excel reports for auditing, DFIR, and penetration testing.

Arkime is an open source, large scale, full packet capturing, indexing, and database system.