
plaso
Digital forensics engine that parses logs, files, and system artifacts to build super timelines, enabling chronological event correlation for…

Digital forensics engine that parses logs, files, and system artifacts to build super timelines, enabling chronological event correlation for…

WhatsApp Forensic Tool

📱 Andriller - is software utility with a collection of forensic tools for smartphones. It performs read-only, forensically sound, non-destructive…

Analyze, extract and visualize features, artifacts and IoCs of files and memory dumps (Windows, Linux, Android, iPhone, Blackberry, macOS binaries,…

Graphical forensic toolkit for parsing, decrypting, and extracting WhatsApp data from Android and iOS devices, including Google Drive and iCloud…


Forensic collection and analysis toolkit for Android and iOS devices to identify potential compromise by known spyware using public and private…


The goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifact…

Collection of forensic tools

androidqf (Android Quick Forensics) helps quickly gathering forensic evidence from Android devices, in order to identify potential traces of…

This toolkit aims to help forensicators perform different kinds of acquisitions on iOS devices

Scan for evidence of CVE-2021-30860 (FORCEDENTRY) exploit

Extract a concerning amount of user information from Unisoc ZTE devices using CVE-2022-38694.

A free, open-source, and cross-platform iDevice management tool

Frida-powered runtime mobile exploration toolkit for assessing iOS and Android app security. Bypass SSL pinning, dump keychains, manipulate heap…

Runtime Mobile Security (RMS) 📱🔥 - is a powerful web interface that helps you to manipulate Android and iOS Apps at Runtime

Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux