
shaha
Hash database builder and reverse lookup tool — SHA256, RIPEMD160, Keccak256, BLAKE3 and more

Hash database builder and reverse lookup tool — SHA256, RIPEMD160, Keccak256, BLAKE3 and more

After using the KeePass password dumper maybe some character parsed as ● is incorrect and you want to know the real character

Search and extract blob files on the Ethereum Blockchain network

Interactively find and recover deleted or :point_right: overwritten :point_left: files from your terminal

PowerShell-based incident response toolkit that collects 25+ forensic artifacts (processes, network connections, registry, browser history) and…

Forensics tool for NTFS (parser, mft, bitlocker, deleted files)

Depix is a PoC for a technique to recover plaintext from pixelized screenshots.



This is the development tree. Production downloads are at:

A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.

Python script for carving Bitlocker VMK keys

Manage BitLocker recovery keys, monitor drive encryption status, and unlock volumes through a portable interface for Windows.

Digital Forensics Intelligence Framework


CLI tools for forensic investigation of Windows artifacts

Steganographic storage & File encryption tool

Detection of malicious VHD files for CVE-2025-24985