
zeek
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Dshell is a network forensic analysis framework.

Remote live forensics and incident response framework with Python agent for collecting forensic data from endpoints, including memory, disk, and…

Labtainers: A Docker-based cyber lab framework

Open-source forensics framework for analyzing Industrial PLC metadata and project files. Scans for suspicious artifacts in ICS environments to…

UNIX-like reverse engineering framework and command-line toolset

A curated list of awesome Hacking tutorials, tools and resources


This framework combines a set of existing open source tools into an integrated package that automates the forensics investigation process. It is able…

Volatility 3 ported to Rust. Same output, much faster.

An advanced memory forensics framework

SQL powered operating system instrumentation, monitoring, and analytics.

Swift-based macOS incident response framework for collecting and analyzing host artifacts, including filesystem timestamps, browser data, unified…

Advanced framework for extracting digital artifacts from volatile memory (RAM) samples, enabling deep forensic analysis of system runtime state…

Platform Security Assessment Framework

NFStream: a Flexible Network Data Analysis Framework.

Forensic Analysis for Mobile Apps (FAMA) -- module for the Autopsy Forensic Browser

PEGASUS-NEO is a comprehensive penetration testing framework designed for security professionals and ethical hackers. It combines multiple security…