
PCredz
This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP,…

This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP,…

Indicators of Compromise from Amnesty International's cyber investigations

Portable, dependency-free incident response tool that automates forensic artifact collection from Unix-like systems, including memory acquisition,…

Cross-platform memory dumper using Frida to extract accessible memory from iOS, Android, and Windows applications for forensic analysis and…


Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders

operative framework is a rust investigation OSINT framework, you can interact with multiple targets, execute multiple modules, create links with…

E-Mail Header Analyzer

A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.

Defanged Indicator of Compromise (IOC) Extractor.

swap_digger is a tool used to automate Linux swap analysis during post-exploitation or forensics. It automates swap extraction and searches for Linux…

mXtract - Memory Extractor & Analyzer

:knife: Scan memory for secrets and more. Maybe eventually a full /proc toolkit.

Collecting & Hunting for IOCs with gusto and style

This tool allows one to recover old RDP (mstsc) session information in the form of broken PNG files. These PNG files allows Red Team member to…

Telegram intelligence collection tool for researchers and investigators. Scrapes groups, messages, media, and user data with OCR, Elasticsearch…

CredsHunter - Credential Hunting scripts for Windows and Linux OS

The best-in-class macOS app to See every packet clearly on your Mac. Alternative to Wireshark