
KNX-Bus-Dump
A tool to listen on a KNX bus via TPUART and the Calimero Project suite and to dump the data from the packets into a Wireshark-Compatible file hex…

A tool to listen on a KNX bus via TPUART and the Calimero Project suite and to dump the data from the packets into a Wireshark-Compatible file hex…

Tool to dive Apache logs for evidence of exploitation of CVE-2018-7600

A frida tool to dump dex in memory to support security engineers analyzing malware.

Audix is a PowerShell tool to quickly configure the Windows Event Audit Policies for security monitoring

Rip Raw is a small tool to analyse the memory of compromised Linux systems.

Python tool and library to help analyze files during malware triage and analysis.

androidqf (Android Quick Forensics) helps quickly gathering forensic evidence from Android devices, in order to identify potential traces of…

An open source script to perform malware static analysis on Portable Executable

Script to remove homoglyphs and zero-width characters to allow for safe distribution of documents from anonymous sources.

PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Packetsifter…


A network sniffer that logs all DNS server replies for use in a passive DNS setup

Malicious HTTP traffic explorer

Encrypted peer-to-peer mesh VPN for remote mobile forensics, enabling wireless ADB and libimobiledevice acquisition, network monitoring, and…


Parse and analyze a Windows Amcache.hve registry hive, VirusTotal integration.

Collects, processes, and visualizes forensic data from cloud and on-premise machine clusters for incident response and digital investigations.