
etl2pcapng
Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

ngrep is like GNU grep applied to the network layer. It's a PCAP-based tool that allows you to specify an extended regular or hexadecimal expression…

a file-sharing tool that allows you to find the responsible person in case of a leakage

OS X Auditor is a free Mac OS X computer forensics tool

Total Commander FTP Password Recovery Tool for Python allows you to decrypt the FTP account password information for all Total Commander versions…

Extract Windows Defender database from vdm files and unpack it

Forensics artefact collection tool for systems running Microsoft Windows

This tool allows one to recover old RDP (mstsc) session information in the form of broken PNG files. These PNG files allows Red Team member to…

A tool for studying JavaScript malware.

Fast and accurate AI powered file content types detection

Python script for carving Bitlocker VMK keys

Detection and sanitization for Acropalypse Now - CVE-2023-21036

A tool to analyze the network flow during attack/defence Capture the Flag competitions

Tool to securely and efficiently wipe devices and partiitions for Linux

Tool to extract the $UsnJrnl from an NTFS volume

Browser-based tool to detect Acropalypse (CVE-2023-21036) by analyzing PNG/GIF images for truncated pixel data, enabling quick vulnerability…

A lightweight CLI tool to detect and reconstruct cropped images vulnerable to Acropalypse (CVE-2023-21036 and CVE-2023-28303) written in Python.

PowerShell-based tool to detect and analyze exploitation attempts targeting CVE-2023-38831, aiding incident response and forensic investigations.