
MESH
Encrypted peer-to-peer mesh VPN for remote mobile forensics, enabling wireless ADB and libimobiledevice acquisition, network monitoring, and…

Encrypted peer-to-peer mesh VPN for remote mobile forensics, enabling wireless ADB and libimobiledevice acquisition, network monitoring, and…

Linux Distro for Mobile Security, Malware Analysis, and Forensics

Forensic Analysis for Mobile Apps (FAMA) -- module for the Autopsy Forensic Browser

Forensic collection and analysis toolkit for Android and iOS devices to identify potential compromise by known spyware using public and private…

Graphical forensic toolkit for parsing, decrypting, and extracting WhatsApp data from Android and iOS devices, including Google Drive and iCloud…

Manage WhatsApp .crypt12, .crypt14 and .crypt15 files.

📱 Andriller - is software utility with a collection of forensic tools for smartphones. It performs read-only, forensically sound, non-destructive…

Filesystem monitor tool for Linux/Android iOS/macOS

androidqf (Android Quick Forensics) helps quickly gathering forensic evidence from Android devices, in order to identify potential traces of…


Extract WhatsApp private key from any non-rooted Android device (Android 7+ supported)

Portable forensic acquisition tool for Android devices that collects relevant data via USB debugging to identify potential spyware or compromise…

android location service cache dumper

Framework for hashing declared permissions in Chromium extensions and APKs, enabling clustering, hunting, and pivoting across potentially malicious…

Breakdown of a c2-network of chinese beamers - SilentSDK-Analysis

Utility for recovering ES File Explorer encrypted files (.eslock)

Zero-Trust Cellular Defense Sub-Service for Android (IMSI-Catcher, 2G SMS Blaster, and 4G aLTEr Detection & Safe Routing)

Gallery Vault dump recovery tool with automated discovery, key derivation and automatic media restoration.