
autopsy
Autopsy® is a digital forensics platform and graphical interface to The Sleuth Kit® and other digital forensics tools. It can be used by law…

Autopsy® is a digital forensics platform and graphical interface to The Sleuth Kit® and other digital forensics tools. It can be used by law…

Library to access the Windows Shell Item format

A Mac OS X forensic utility which manages file system mounting in support of forensic procedures.

This is the development tree. Production downloads are at:

A python tool that will extract exif data from picture with two methods

Cellebrite Physical Analyzer python scripts to aid analysts with extended functionality

Manage BitLocker recovery keys, monitor drive encryption status, and unlock volumes through a portable interface for Windows.

analyzeMFT.py is designed to fully parse the MFT file from an NTFS filesystem and present the results as accurately as possible in multiple formats.

CVE-2023-21036 detection in Go

X-Ways Acropalypse extension detects CVE-2023-21036 in common images

Detection and restoration of Windows Snipping Tool PNG captures vulnerable to CVE-2023-28303


After using the KeePass password dumper maybe some character parsed as ● is incorrect and you want to know the real character

A powerful, privacy-focused, browser-based tool to visualize and analyze GPS data from your photos. Simply drag and drop images to generate…

Find and redact secrets in AI coding agent histories (Claude Code, and more).

F*ck file system - cli file search tool that bypasses OS kernel and reads your disc directlry

Detection and sanitization for Acropalypse Now - CVE-2023-21036

POC experiments with Volume Shadow copy Service (VSS)