
fridump
Cross-platform memory dumper using Frida to extract accessible memory from iOS, Android, and Windows applications for forensic analysis and…

Cross-platform memory dumper using Frida to extract accessible memory from iOS, Android, and Windows applications for forensic analysis and…

Graphical forensic toolkit for parsing, decrypting, and extracting WhatsApp data from Android and iOS devices, including Google Drive and iCloud…

the fastest and most powerful android decompiler(native tool working without Java VM) for the APK, DEX, ODEX, OAT, JAR, AAR, and CLASS file. which…

Manage WhatsApp .crypt12, .crypt14 and .crypt15 files.

📱 Andriller - is software utility with a collection of forensic tools for smartphones. It performs read-only, forensically sound, non-destructive…

Filesystem monitor tool for Linux/Android iOS/macOS

androidqf (Android Quick Forensics) helps quickly gathering forensic evidence from Android devices, in order to identify potential traces of…

Encrypted peer-to-peer mesh VPN for remote mobile forensics, enabling wireless ADB and libimobiledevice acquisition, network monitoring, and…

Linux Distro for Mobile Security, Malware Analysis, and Forensics

Extract WhatsApp private key from any non-rooted Android device (Android 7+ supported)

Portable forensic acquisition tool for Android devices that collects relevant data via USB debugging to identify potential spyware or compromise…

Bash script to extract data from a "chekcra1ned" iOS device


ELEGANTBOUNCER is a detection tool for file-based mobile exploits.

This toolkit aims to help forensicators perform different kinds of acquisitions on iOS devices

Utility for recovering ES File Explorer encrypted files (.eslock)

Gallery Vault dump recovery tool with automated discovery, key derivation and automatic media restoration.

Extract a concerning amount of user information from Unisoc ZTE devices using CVE-2022-38694.