
pict
Modular incident response toolkit for collecting forensic data from potentially infected macOS endpoints, capturing browser artifacts, persistence…

Modular incident response toolkit for collecting forensic data from potentially infected macOS endpoints, capturing browser artifacts, persistence…

A simple, reliable and reasonably fast network capture analyzer.

Arkime is an open source, large scale, full packet capturing, indexing, and database system.

Automated, Collection, and Enrichment Platform

Passive hybrid fingerprinting engine — identify hosts without sending a single packet

Hunt down social media accounts by username across social networks

Program for determining types of files for Windows, Linux and MacOS.

Semantic search over videos using Gemini Embedding 2 or Qwen3-VL.

A free, open-source, and cross-platform iDevice management tool

Browser forensics tool for Google Chrome, other Chromium-based browsers, and Mozilla Firefox

Cortex: a Powerful Observable Analysis and Active Response Engine

Portable, dependency-free incident response tool that automates forensic artifact collection from Unix-like systems, including memory acquisition,…

Cross-platform memory dumper using Frida to extract accessible memory from iOS, Android, and Windows applications for forensic analysis and…

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.


Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders

Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in order to…

E-Mail Header Analyzer