
WinPmem
The multi-platform memory acquisition tool.

The multi-platform memory acquisition tool.

Forensics tool for NTFS (parser, mft, bitlocker, deleted files)

Digital forensic acquisition tool for Windows based incident response.

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

Frida.re based RunPE (and MapViewOfSection) extraction tool

Windows offline filesystem hacking tool for Linux

A file system forensics analysis scanner and threat hunting tool. Scans file systems at the MFT and OS level and stores data in SQL, SQLite or CSV.…

Live memory analysis tool for detecting reflectively loaded .NET DLLs by scanning process memory regions for abnormal flags, page types, and PE…

GUI for Volatility forensics tool written in PyQT5

Web tool for detecting Acropalypse (CVE-2023-21036) https://lordofpipes.github.io/acropadetect/

Depix is a PoC for a technique to recover plaintext from pixelized screenshots.

All-in-one penetration testing toolkit aggregating 185+ tools across 20 categories including information gathering, web & wireless attacks, phishing,…

The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis

Fast and accurate AI powered file content types detection

This is the development tree. Production downloads are at:

Decrypt WhatsApp encrypted media files (images, videos, audio, documents) using media keys extracted from iOS ChatStorage.sqlite or Android…

Windows passwords decryption from dump files

A collection of scripts which may come in handy during your freedom fighting activities.