
velociraptor
Digging Deeper....

Digging Deeper....

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

This is the development tree. Production downloads are at:

Live Windows forensic acquisition tool that collects system artefacts (registry, memory, disk, files) into CSV/JSON for early compromise detection…

Incident Response Forensic Framework

Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux


Universal Windows extraction tool that detects unknown files and routes them to the right bundled extractor.

ltm is a machine-history debugger for Linux. It records process, file, network, memory, and block-I/O metadata via eBPF, then lets you query the…

A forensic evidence collection & analysis toolkit for OS X