
HiddenNetworks-Python
USB device connection forensics tool that traces physical device-to-computer relationships across local and domain networks, generating visual graphs…

USB device connection forensics tool that traces physical device-to-computer relationships across local and domain networks, generating visual graphs…

Generates YARA rules from installed software on a running OS to baseline known software and find similar installations across digital forensic…

A python script which allows you to parse GeoLocation data from your Image files stored in a dataset.It also produces output in CSV file and also in…

Volatility plugin to extract X screenshots from a memory dump

RTF Cleaner, tries to extract URL from malicious RTF samples using CVE-2017-0199 & CVE-2017-8759

RTF de-obfuscator for CVE-2017-0199 documents to find URLs statically.

Program for determining types of files for Windows, Linux and MacOS.

Wireshark's official code repository. You can keep the releases coming by donating at https://wiresharkfoundation.org/donate/.

Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders

mXtract - Memory Extractor & Analyzer

:knife: Scan memory for secrets and more. Maybe eventually a full /proc toolkit.

Automated, Collection, and Enrichment Platform

Sashay is an automatic installer for useful tools.

Modular incident response toolkit for collecting forensic data from potentially infected macOS endpoints, capturing browser artifacts, persistence…

Offline AI Security Assistant for Air-Gapped Pentesting

Download and View Skype History Without Skype

Windows link file (shortcuts) examiner

Post-Exploitation EVTX Analyzer for BloodHound Mapping