
GhostTrace
Read-only Windows forensic scanner for software traces — persistence, execution artifacts (Prefetch, Shimcache, BAM), user activity and Ghost Tasks…

Read-only Windows forensic scanner for software traces — persistence, execution artifacts (Prefetch, Shimcache, BAM), user activity and Ghost Tasks…

Cross-platform Yara scanner written in Go

Multi-layered malware scanner combining hash-based verification, behavioral analysis, and sandbox execution for threat detection, incident response,…

Program for determining types of files for Windows, Linux and MacOS.

IOC and YARA-based scanner for detecting indicators of compromise via file name regex, YARA signatures, hash matching, and C2 back-connect checks on…

Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs

CredsHunter - Credential Hunting scripts for Windows and Linux OS

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on…

Manage BitLocker recovery keys, monitor drive encryption status, and unlock volumes through a portable interface for Windows.

Scanner for the Mini Shai-Hulud npm/PyPI supply chain worm (NHS CC-4781 · CVE-2026-45321). Detects gh-token-monitor persistence, payload artefacts,…

Universal Windows extraction tool that detects unknown files and routes them to the right bundled extractor.

Python library for parsing CLR/PE metadata in .NET assemblies, exposing streams and hash fingerprints to support malware analysis and threat hunting.

Wireshark's official code repository. You can keep the releases coming by donating at https://wiresharkfoundation.org/donate/.

Tool that gathers a customizable set of ETW telemetry and generates user-defined detections

Playground Sessions - Storing User Credentials in Plaintext

Cross-platform memory dumper using Frida to extract accessible memory from iOS, Android, and Windows applications for forensic analysis and…


A free utility that finds malware, adware and other security threats