
androidqf
Portable forensic acquisition tool for Android devices that collects relevant data via USB debugging to identify potential spyware or compromise…

Portable forensic acquisition tool for Android devices that collects relevant data via USB debugging to identify potential spyware or compromise…

FWT is a security analysis and file monitoring tool that utilizes Sysmon events.

Spring4Shell (CVE-2022-22965) DFIR lab with exploit simulation, Python WAF, IOC-based detection, and PCAP analysis.

Kirjuri is a web application for managing cases and physical forensic evidence items.

Re-play Security Events

A tool to listen on a KNX bus via TPUART and the Calimero Project suite and to dump the data from the packets into a Wireshark-Compatible file hex…

Open-source forensics framework for analyzing Industrial PLC metadata and project files. Scans for suspicious artifacts in ICS environments to…


AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

DARKSURGEON is a Windows packer project to empower incident response, digital forensics, malware analysis, and network defense.

Current links from the OSINT Inception start-me project

This repository contains the complete record of my three-year research journey, covering the project from foundational concepts to advanced-level…

Systematic Linux kernel hardening project implementing KSPP-recommended settings, module blacklisting, and restricted environment configuration for…

Analyze, extract and visualize features, artifacts and IoCs of files and memory dumps (Windows, Linux, Android, iPhone, Blackberry, macOS binaries,…

Extract all forensic interesting information of Firefox, Iceweasel and Seamonkey browsers

Blue Team detection lab created with Terraform and Ansible in Azure.

Generates YARA rules from installed software on a running OS to baseline known software and find similar installations across digital forensic…

Generate bulk YARA rules from YAML input