
foremost
File carving utility that recovers deleted files from disk images and raw drives by matching headers, footers, and internal structures via…

File carving utility that recovers deleted files from disk images and raw drives by matching headers, footers, and internal structures via…

Program for determining types of files for Windows, Linux and MacOS.

Detect images that likely exploit CVE-2022-44268

A lightweight eBPF program to monitor file creation and modification events on Linux. This tool leverages eBPF (Extended Berkeley Packet Filter) to…

A personal Windows SOC suite built in PowerShell — monitors network connections, resource usage, scheduled tasks and power events with severity…

Python-based interactive packet manipulation library for forging, decoding, sending, capturing, and analyzing network packets across a wide range of…

Extract Windows Defender database from vdm files and unpack it

Download and View Skype History Without Skype

An open-source digital image forensic toolset

volatility explorer (volatility 2)

Live memory analysis detecting malware IOCs in processes, modules, handles, tokens, threads, .NET assemblies, memory address space and environment…

Offline Windows credential extractor that dumps LM/NT hashes, cached domain passwords, and LSA secrets from registry hives without relying on system…

Log what files are accessed by any Linux process

Python program to steganography files into images using the Least Significant Bit.