forensics-tools
Here are 136 public repositories matching this topic...
Digital Forensics Guide. Learn all about Digital Forensics, Computer Forensics, Mobile device Forensics, Network Forensics, and Database Forensics.
- Updated
Jan 4, 2024 - Python
Graph Visualization for windows event logs
- Updated
Jan 15, 2025 - Python
Digital forensic analysis tool that provides a user-friendly interface for investigating disk images.
- Updated
Nov 12, 2025 - Python
All-sources tool to search websites by favicons
- Updated
Nov 9, 2024 - Python
Fast and robust date extraction from web pages, with Python or on the command-line
- Updated
Nov 4, 2025 - Python
Cross-platform registry browser for raw Windows registry files
- Updated
Apr 15, 2023 - Python
FIT is a modular suite of Python applications for digital forensic acquisition of online contents such as web pages, emails, social media, and more. Each module can run independently or as part of the full FIT suite.
- Updated
Oct 27, 2025 - Python
ExeSpy is a cross-platform PE viewer for EXE and DLL files
- Updated
Feb 19, 2025 - Python
Linux BPF plugins for Volatility3
- Updated
Jan 19, 2024 - Python
Automate ssh private key extraction from ssh-agent
- Updated
Jun 2, 2023 - Python
Save your corrupted images easily.Easy to use forensic tool.
- Updated
Sep 23, 2024 - Python
A forensic analysis framework for enumerating slack artifacts residing in the Operating system.
- Updated
Sep 23, 2025 - Python
A forensic tool to automatically extract as many artifacts as possible from the WhatsApp desktop/web client
- Updated
Jan 12, 2022 - Python
Cryptocurrency Discovery and Triage Tool - Identify multiple cryptocurrency addresses and transactions from various wallet applications!
- Updated
Oct 3, 2025 - Python
YellowDotDecode is a graphical application that decodes the hidden information embedded in the yellow dots printed by some printers. These yellow dots, often invisible to the naked eye, contain metadata such as the date, time, and serial number of the printer, which can be used to trace the source of a printed document.
- Updated
Apr 22, 2025 - Python
MFT and USN parser that allows direct extraction in filesystem timeline format (mactime), dump all resident files in the MFT in their original folder structure and run yara rules over them all.
- Updated
May 10, 2023 - Python
Analysis-oriented command line tool for remote execution and triage via EDRs API
- Updated
Oct 3, 2025 - Python
Improve this page
Add a description, image, and links to the forensics-tools topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the forensics-tools topic, visit your repo's landing page and select "manage topics."