Forensics Tools

534 tools
DFIR-O365RC
DFIR-O365RC
Open Source Forensics

PowerShell module for Office 365 and Azure log collection

dfir-orc
dfir-orc
Open Source Forensics

Forensics artefact collection tool for systems running Microsoft Windows

DFIR4vSphere
DFIR4vSphere
Open Source Forensics

Powershell module for VMWare vSphere forensics

DFIRPowerShellScripts
DFIRPowerShellScripts
Open Source Forensics

Various PowerShells scripts I've made (or others have made) to automate some of the boring stuff in my everyday DFIR journey!

dfirtrack
dfirtrack
Free Forensics

DFIRTrack - The Incident Response Tracking Application

DFW1N-OSINT
DFW1N-OSINT
Open Source Forensics Reconnaissance

Australian Open Source Intelligence Gathering Resources, Austra…

die-python
die-python
Open Source Forensics

Native Python3 bindings for @horsicq's Detect-It-Easy

digital-forensics-lab
digital-forensics-lab
Free Forensics

Free hands-on digital forensics labs for students and faculty

Digital-Forensics-Tools
Digital-Forensics-Tools
Open Source Kali Forensics Reconnaissance

A curated list of essential digital forensics tools used for investigation, data recovery, and security analysis. These tools help in disk f…

digler
digler
Open Source Forensics

Digler is a tool for forensic disk analysis and file recovery. It's designed to help you unearth lost or deleted data from various disk imag…

DiscordOps-Monitor
DiscordOps-Monitor
Free Forensics

Host Guardian --- A lightweight system monitor bot for Discord that alerts on high CPU, shows top processes, and lets you safely terminate t…

DistroForensics
DistroForensics
Free Kali Forensics

Elenco di Distro LINUX - WINDOWS - MacOS

DLest
DLest
Open Source Forensics

Microsoft Windows DLL Export Browser (Enumerate Exports, COM Methods and Properties) with Advanced Search Features.

DNS-collector
DNS-collector
Open Source Forensics Reconnaissance

Grab your DNS logs, detect anomalies, and finally understand what's happening on your network. The missing piece between DNS servers and you…

dnsmonster
dnsmonster
Open Source Forensics Reconnaissance

Passive DNS Capture and Monitoring Toolkit

docker-packing-box
docker-packing-box
Open Source Forensics Reverse Engineering

Docker image gathering packers and tools for making datasets of packed executables and training machine learning models for packing detectio…

Dojo-101
Dojo-101
Open Source Forensics Web Application

Offline Cybersecurity Knowledge Base

Dragodis
Dragodis
Free Forensics Reverse Engineering

Dragodis is a Python framework which allows for the creation of universal disassembler scripts.

drakvuf
drakvuf
Free Forensics

DRAKVUF Black-box Binary Analysis

drakvuf-sandbox
drakvuf-sandbox
Free Forensics Reverse Engineering

DRAKVUF Sandbox - automated hypervisor-level malware analysis system

DriveFS-Sleuth
DriveFS-Sleuth
Free Forensics

DriveFS Sleuth is a Python tool that automates investigating Google Drive File Stream disk artifacts, the tool has been developed based on r…

dz6
dz6
Open Source Forensics Reverse Engineering

Fast Vim-inspired TUI hex editor

EDR-GhostLocker
EDR-GhostLocker
Open Source Evasion Forensics

AppLocker-Based EDR Neutralization

elegant-bouncer
elegant-bouncer
Free Forensics

ELEGANTBOUNCER is a detection tool for file-based mobile exploits.