
machofile
machofile is a module to parse Mach-O binary files

machofile is a module to parse Mach-O binary files

A collection of malware samples caught by several honeypots i manage

A Repository to Track Anti-Forensic Techniques

HTB OneTwoSeven full walkthrough: deterministic creds, chroot symlink escape, rewrite-rule bypass RCE, CVE-2024-1086 to root

Autopsy® is a digital forensics platform and graphical interface to The Sleuth Kit® and other digital forensics tools. It can be used by law…

🚨 Threat intel & incident response research on SharePoint "ToolShell" RCE zero-day (CVE-2025-53770). 🕵️♂️ Covers root-cause deserialization flaws,…

An OSINT / digital forensics tool built in Python

A repository hosting example goodware evtx logs containing sample software installation and basic user interaction

Digital Forensics Intelligence Framework


forensics-decoding-powershell-payloads

PowerShellProfiler


Enumerate various traits from Windows processes as an aid to threat hunting

Basic log analysis tool to detect impossible travel via IP address geographic information


A tool to use novel locations to extract metadata from Office documents.

A collection of scripts for processing network forensics type data and intelligence, mainly into a postgres database.