
forensictools
Collection of forensic tools
binary-analysisdata-recoverydigital-forensics+7
701

Collection of forensic tools

PowerShell-based incident response toolkit that collects 25+ forensic artifacts (processes, network connections, registry, browser history) and…

PowerShell toolkit that extracts locked Windows files (SAM, SYSTEM, NTDS, ...) using MFT parsing and raw disk reads

A forensic evidence collection & analysis toolkit for OS X