
nox-framework
High-performance OSINT/CTI framework for automated identity pivoting and risk analysis across 120+ sources.

High-performance OSINT/CTI framework for automated identity pivoting and risk analysis across 120+ sources.

Advanced framework for extracting digital artifacts from volatile memory (RAM) samples, enabling deep forensic analysis of system runtime state…

Remote live forensics and incident response framework with Python agent for collecting forensic data from endpoints, including memory, disk, and…

Dshell is a network forensic analysis framework.

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from…

Incident Response Forensic Framework

Tool and framework for securely reading untrusted USB mass storage devices.

Automated forensic analysis tool for Google Workspace audit logs. Acquires all log types, maps events to MITRE ATT&CK Cloud Framework, and identifies…

Swift-based macOS incident response framework for collecting and analyzing host artifacts, including filesystem timestamps, browser data, unified…

Open-source forensics framework for analyzing Industrial PLC metadata and project files. Scans for suspicious artifacts in ICS environments to…

Labtainers: A Docker-based cyber lab framework


Process heap analysis framework - Windows/Linux - record type inference and forensics

A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.

🦅 ZeroScout: The Autonomous Local & Cloud Threat Hunter. Visualize attacks in a live War Room, identify APT groups via Genetic Analysis, and…

This framework combines a set of existing open source tools into an integrated package that automates the forensics investigation process. It is able…

Digital Forensics Intelligence Framework