Forensics Tools

534 tools
stringsext
stringsext
Free Forensics

Find multi-byte-encoded strings in binary data (Gitlab mirror).

stringsifter
stringsifter
Open Source Forensics Reverse Engineering

A machine learning tool that ranks strings based on their relevance for malware analysis.

Stuxnet-Rootkit
Stuxnet-Rootkit
Free Forensics Reverse Engineering

Stuxnet extracted binaries by reversing & Stuxnet Rootkit Analysis

SuperLibrary
SuperLibrary
Free Kali Forensics Reverse Engineering

A massive, curated collection of information security books, study guides, cheat sheets, and resources. This library is intended for educati…

sussyfinder
sussyfinder
Open Source Forensics

Single file php webshell scanner to detect potentially malicious backdoor based on token and hash with web interface

suzaku
suzaku
Open Source Forensics

Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.

svg_phishing_tools
svg_phishing_tools
Open Source Forensics Social Engineering

SVG Analysis and generation tools for commonly seen SVG attachment phishing

tailpipe
tailpipe
Open Source Forensics

select * from logs; Tailpipe is an open source SIEM for instant log insights, powered by DuckDB. Analyze millions of events in seconds, righ…

tcpflow
tcpflow
Open Source Forensics

TCP/IP packet demultiplexer. Download from:

tenzir
tenzir
Open Source Forensics

Tenzir is the data pipeline engine for security teams.

The-Awesome-And-Dangerous-collection
The-Awesome-And-Dangerous-collection
Free Evasion Forensics

A high-risk archive of historical malware, exploit kits, crypters, and webshells for educational and cybersecurity research purposes. None o…

TheHive4py
TheHive4py
Open Source Forensics

thehive4py the de facto Python API client of TheHive …

ThePhish
ThePhish
Open Source Forensics Social Engineering

ThePhish: an automated phishing email analysis tool

theZoo
theZoo
Free Forensics

A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open an…

thorium
thorium
Free Forensics

A scalable file analysis and data generation platform that allows users to easily orchestrate arbitrary docker/vm/shell tools at scale.

ThreatHunting-Keywords
ThreatHunting-Keywords
Free Exploitation Forensics

Awesome list of keywords and artifacts for Threat Hunting sessions

ThreatHunting-Keywords-yara-rules
ThreatHunting-Keywords-yara-rules
Free Forensics

yara detection rules for hunting with the threathunting-keywords project

ThreatIntel-Reports
ThreatIntel-Reports
Free Forensics

Raw data from Threat Intelligence Reports with automatic reports collection and keyword search across thousands of reports

timesketch
timesketch
Open Source Forensics

Collaborative forensic timeline analysis

tiny_tracer
tiny_tracer
Open Source Forensics Reverse Engineering

A Pin Tool for tracing API calls etc

toolkit
toolkit
Free Forensics Reverse Engineering

The essential toolkit for reversing, malware analysis, and cracking

toxnet
toxnet
Free Forensics Post-Exploitation

Decentralised P2P botnet using toxcore.

TRACE-Forensic-Toolkit
TRACE-Forensic-Toolkit
Open Source Forensics

Digital forensic analysis tool that provides a user-friendly interface for investigating disk images.

traceeshark
traceeshark
Open Source Forensics

Deep Linux runtime visibility meets Wireshark