Browse app-forensics
acstore
afflib
Library that implements the AFF image standardafl
aflplusplus
aide
AIDE (Advanced Intrusion Detection Environment) is a replacement for Tripwirebindiff
brakeman
bulk_extractor
chkrootkit
a tool to locally check for signs of a rootkitcmospwd
CmosPwd decrypts password stored in cmos used to access BIOS SETUPdfvfs
dfwinreg
dfxml
dmitry
examiner
Examiner is an application that utilizes the objdump command to disassemble and comment foreign executable binariesfatback
foremost
A console program to recover files based on their headers and footersftimes
galleta
IE Cookie Parsergitleaks
hindsight
honggfuzz
inception
kjackal
lazagne
libbde
libbfio
libesedb
libevt
libevtx
libewf
Implementation of the EWF (SMART and EnCase) image formatlibexe
libforensic1394
libfsapfs
libfsclfs
libfsext
libfsfat
libfshfs
libfsntfs
libfsxfs
libfvde
liblnk
libluksde
libmodi
libmsiecf
libnk2
libnsfdb
libodraw
libolecf
libpff
libphdi
libqcow
libregf
libscca
libsmraw
libvsapm
libvsgpt
libvshadow
libvslvm
libvsmbr
libwtcdb
log2timeline
lynis
Security and system auditing toolmac-robber
mac-robber is a digital forensics and incident response tool that collects datamagicrescue
Find deleted files in block devicesmake-pdf
memdump
Simple memory dumper for UNIX-Like systemsmvt
mxtract
mysql-magic
nrich
oletools
openscap
openscap-daemon
origami-pdf
pasco
IE Activity Parserpcileech
pdf-parser
pdfid
plaso
pytsk
radamsa
RdpCacheStitcher
readpe
reglookup
regviewer
rifiuti
Recycle Bin Analyzerrkhunter
Rootkit Hunter scans for known and unknown rootkits, backdoors, and sniffers.s3tk
samhain
scalpel
sleuthkit
A collection of file system and media management forensic analysis toolsstegoveritas
stigqter
tcpxtract
unhide
volatility3
whispers
xmount
yara
yara-x
zsteg
zzuf
Transparent application input fuzzer