
ADRecon
PowerShell tool that extracts Active Directory artifacts via LDAP or ADWS and generates Excel reports for auditing, DFIR, and penetration testing.

PowerShell tool that extracts Active Directory artifacts via LDAP or ADWS and generates Excel reports for auditing, DFIR, and penetration testing.

High-performance OSINT/CTI framework for automated identity pivoting and risk analysis across 120+ sources.

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

Automated forensic analysis tool for Google Workspace audit logs. Acquires all log types, maps events to MITRE ATT&CK Cloud Framework, and identifies…

Framework for hashing declared permissions in Chromium extensions and APKs, enabling clustering, hunting, and pivoting across potentially malicious…

A modular OSINT & SOCMINT framework for social media intelligence, investigation, and public data analysis.

Open source Android Forensics app and framework

Forensic Analysis for Mobile Apps (FAMA) -- module for the Autopsy Forensic Browser

Malicious HTTP traffic explorer