
IPED
IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

CVE-2021-1675 Detection Info

Autopsy® is a digital forensics platform and graphical interface to The Sleuth Kit® and other digital forensics tools. It can be used by law…

a file-sharing tool that allows you to find the responsible person in case of a leakage

VirtualBox Disk Image Encryption password cracker

ATAboy is a user-friendly bridge that allows legacy CHS only style IDE (PATA) hard drives to be connected to a modern computer as a standard USB Mass…

A file system forensics analysis scanner and threat hunting tool. Scans file systems at the MFT and OS level and stores data in SQL, SQLite or CSV.…

Fast and accurate AI powered file content types detection

Detection and sanitization for Acropalypse Now - CVE-2023-21036

F*ck file system - cli file search tool that bypasses OS kernel and reads your disc directlry

Asclepius validates backup integrity by restoring files and actively testing their recoverability. Instead of trusting metadata, it attempts to parse…

Universal Windows extraction tool that detects unknown files and routes them to the right bundled extractor.

Detect images that likely exploit CVE-2022-44268

Python tool that parses the NTFS $MFT to copy locked files during incident response, bypassing OS locks by reading raw disk locations. Supports…

PowerShell tool for red teamers that clears execution evidence by stopping event logging, removing file and registry artifacts, and saving timestamps…

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

Live Windows forensic acquisition tool that collects system artefacts (registry, memory, disk, files) into CSV/JSON for early compromise detection…

A python tool that will extract exif data from picture with two methods