
unblob
Extract files from any kind of container formats

Extract files from any kind of container formats

Find and redact secrets in AI coding agent histories (Claude Code, and more).

Manage BitLocker recovery keys, monitor drive encryption status, and unlock volumes through a portable interface for Windows.

Collection of forensic tools

This is the development tree. Production downloads are at:

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

Universal Windows extraction tool that detects unknown files and routes them to the right bundled extractor.

A tool for forensic file system reconstruction.

Interactively find and recover deleted or :point_right: overwritten :point_left: files from your terminal

A bare-metal x86 utility to dump physical RAM directly to disk. Built and tested for Cold Boot Attack experiments on frozen memory.

Forensics tool for NTFS (parser, mft, bitlocker, deleted files)

Library to access the Windows Shell Item format

F*ck file system - cli file search tool that bypasses OS kernel and reads your disc directlry

Autopsy® is a digital forensics platform and graphical interface to The Sleuth Kit® and other digital forensics tools. It can be used by law…

A lightweight CLI tool to detect and reconstruct cropped images vulnerable to Acropalypse (CVE-2023-21036 and CVE-2023-28303) written in Python.

ATAboy is a user-friendly bridge that allows legacy CHS only style IDE (PATA) hard drives to be connected to a modern computer as a standard USB Mass…

X-Ways Acropalypse extension detects CVE-2023-21036 in common images

Depix is a PoC for a technique to recover plaintext from pixelized screenshots.