
LiME
Kernel module for volatile memory acquisition from Linux and Android devices, producing forensically sound captures to disk or over the network.

Kernel module for volatile memory acquisition from Linux and Android devices, producing forensically sound captures to disk or over the network.

Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux

Analyze, extract and visualize features, artifacts and IoCs of files and memory dumps (Windows, Linux, Android, iPhone, Blackberry, macOS binaries,…

Linux Distro for Mobile Security, Malware Analysis, and Forensics

Free hands-on digital forensics labs for students and faculty

The goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifact…

Filesystem monitor tool for Linux/Android iOS/macOS

Reverse engineering and pentesting for Android applications

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

privacy-first, open-source and free idevice management tool written in Rust and Qt

Graphical forensic toolkit for parsing, decrypting, and extracting WhatsApp data from Android and iOS devices, including Google Drive and iCloud…

Autopsy® is a digital forensics platform and graphical interface to The Sleuth Kit® and other digital forensics tools. It can be used by law…

Runtime Mobile Security (RMS) 📱🔥 - is a powerful web interface that helps you to manipulate Android and iOS Apps at Runtime

Parses iOS and iPadOS forensic extractions into HTML, TSV, timeline, KML, and LAVA reports with modular artifact discovery and encrypted iTunes…

QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.

Android Logs Events And Protobuf Parser

📱 Andriller - is software utility with a collection of forensic tools for smartphones. It performs read-only, forensically sound, non-destructive…

Cross-platform memory dumper using Frida to extract accessible memory from iOS, Android, and Windows applications for forensic analysis and…