A curated list of awesome forensic analysis tools and resources
-
Updated
May 27, 2024
A curated list of awesome forensic analysis tools and resources
❄️ PcapXray - A Network Forensics Tool - To visualize a Packet Capture offline as a Network Diagram including device identification, highlight important communication and file extraction
UAC is a Live Response collection script for Incident Response that makes use of native binaries and tools to automate the collection of AIX, Android, ESXi, FreeBSD, Linux, macOS, NetBSD, NetScaler, OpenBSD and Solaris systems artifacts.
The best tools and resources for forensic analysis.
Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.
This will compile a list of Android, iOS, Linux malware techniques for attacking and detection purposes.
unix_collector is a live response collection script for Incident Response on UNIX-like systems using native binaries.
A Volatility plugin for finding sqlite database rows
LiveDiff is a portable system-level differencing tool for Microsoft Windows-based operating systems
Extract valid or partially valid domain names and IPs from malicious or invalid URLs.
CellXML-Registry.exe is a portable Windows tool that parses an offline Windows Registry hive file and converts it to the RegXML format. CellXML-Registry leverages the Registry parser project by Eric Zimmerman to aid in parsing the Registry structure.
CFREDS case study for subject code: CTMTCS S2 P2
A python-based tool to extract forensic info from ActivitiesCache.db (Windows Activity Timeline)
An updated C# port of X-Ways X-Tensions API.
Kali Linux in Docker + Ubuntu 22.04 in Docker for Bug Bounty, Penetration Testing, Security Research, Computer Forensics and Reverse Engineering. Kali Linux inside with Docker with or without support with systemd, repository also contains Proof of Concept with kind (Kubernetes in Docker) to test Kali Linux with enabled systemd in K8s cluster
Dump a process memory and extract data based on regular expressions.
Guymager is a free forensic imager for media acquisition. It is based on libewf and libguytools.
Repositório que a apresenta os meus artigos sobre tecnologia - Linux, Cibersegurança, Computação Forense e Gestão de Projectos
A Python script to extract and analyse EXIF data
Add a description, image, and links to the computer-forensics topic page so that developers can more easily learn about it.
To associate your repository with the computer-forensics topic, visit your repo's landing page and select "manage topics."