
MrHandler
SSH-based Linux incident response tool that executes diagnostic commands to collect network configs, logs, user accounts, and processes, then…

SSH-based Linux incident response tool that executes diagnostic commands to collect network configs, logs, user accounts, and processes, then…


Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.

Python program to steganography files into images using the Least Significant Bit.

Scan files or process memory for CobaltStrike beacons and parse their configuration

Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

Turn any collection of documents into a knowledge graph. Extract entities and relationships via LLM, deduplicate with your approval. Map domains,…

ETW and WPP tracing tool for security research. Subscribes to multiple providers, auto-parses events to JSON, and supports advanced filtering,…

Parses Apple Unified Logs to extract process, thread, activity, timestamp, and message metadata from logarchives or live macOS systems into JSONL/CSV…

A high-speed forensic timeline engine for Windows forensic artifact CSV output built for DFIR investigators. Quickly consolidate CSV output from…

A network packet forensics tool for SSH

Linux Distro for Mobile Security, Malware Analysis, and Forensics



A low pin count sniffer for ICEStick - targeting TPM chips

Hashes for vulnerable LOG4J versions