Forensics Tools

534 tools
cti-blueprints
cti-blueprints
Open Source Forensics

CTI Blueprints is a free suite of templates and tools that helps Cyber Threat Intelligence analysts create high-quality, actionable reports …

cti-expert
cti-expert
Free Forensics Reconnaissance

CTI Expert — Cyber Threat Intelligence & OSINT analysis skill for Claude Code. 67+ commands, 35 techniques, no API keys required.

Cute-RATs
Cute-RATs
Free Forensics Reverse Engineering

This is a collection of RATs for educational purposes

cyber-intelligence-toolkit
cyber-intelligence-toolkit
Free Forensics Reconnaissance

Curated manuals, playbooks, and checklists for OSINT, OPSEC, cyber security, and digital investigations

cyberbro
cyberbro
Open Source Forensics Reconnaissance

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

cyberchef-recipes
cyberchef-recipes
Free Forensics

A list of cyber-chef recipes and curated links

CyberScan
CyberScan
Open Source Forensics Reconnaissance

CyberScan: Network's Forensics ToolKit

CyberSec-Books
CyberSec-Books
Free Forensics Reverse Engineering

Some useful books related to Cybersecurity, Linux and more.

CyberSecurity_Conferences
CyberSecurity_Conferences
Open Source Forensics Reconnaissance

List of some cybersecurity conferences

cybersecurity-career-path
cybersecurity-career-path
Open Source Forensics

⚠️ Education and Certification are Optional

Cybersecurity-Notes
Cybersecurity-Notes
Open Source Forensics Post-Exploitation

Cybersecurity Notes For Intermediate and Advanced Hackers | CEH Exam Prep Also Included

CyberThreatHunting
CyberThreatHunting
Open Source Forensics

A collection of resources for Threat Hunters

DC3-MWCP
DC3-MWCP
Free Forensics

DC3 Malware Configuration Parser (DC3-MWCP) is a framework for parsing configuration information from malware. The information extracted fro…

dcfldd
dcfldd
Open Source Forensics

Enhanced version of dd for forensics and security

DecipheringUAL
DecipheringUAL
Free Forensics

This repo aims to help you decipher the UAL from a Digital Forensics & Incident Response (DFIR) perspective. The UAL is the Microsoft 365 Un…

DeepTraffic
DeepTraffic
Open Source Forensics

Deep Learning models for network traffic classification

DEFCON-31-Syscalls-Workshop
DEFCON-31-Syscalls-Workshop
Free Evasion Forensics

Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".

DefenderYara
DefenderYara
Free Forensics

Extracted Yara rules from Windows Defender mpavbase and mpasbase

deobshell
deobshell
Open Source Forensics Reverse Engineering

Powershell script deobfuscation using AST in Python

DestroyScammers
DestroyScammers
Open Source Forensics Reconnaissance

Scam intelligence, phishing attribution, drainer mapping. Legal OSINT only. Public data. Real cases. For researchers and victims.

Detect-It-Easy
Detect-It-Easy
Open Source Forensics Reverse Engineering

Program for determining types of files for Windows, Linux and MacOS.

detect-lkm-rootkit-cheatsheet
detect-lkm-rootkit-cheatsheet
Free Forensics

Cheat sheet to detect and remove linux kernel rootkit

DFIR
DFIR
Free Forensics

This is a repository dedicated to the DFIR journey. Contains notes, reflections and links to tools.

DFIR-Detection-Engineering
DFIR-Detection-Engineering
Open Source Forensics

Digital Forensics Incident Response and Detection engineering: Análisis forense de artefactos comunes y no tan comunes. Técnicas anti-forens…