Giter Club home page Giter Club logo

awesome-forensics's Introduction

Awesome Forensics

Awesome Link Status

A curated list of awesome forensic analysis tools and resources.


Collections

Tools

Distributions

  • deft - Linux distribution for forensic analysis

Frameworks

  • dff - Forensic framework
  • PowerForensics - PowerForensics is a framework for live disk forensic analysis
  • The Sleuth Kit - Tools for low level forensic analysis

Live forensics

  • grr - GRR Rapid Response: remote live forensics for incident response
  • mig - Distributed & real time digital forensics at the speed of the cloud

Imageing

  • dc3dd - Improved version of dd
  • dcfldd - Different improved version of dd (has some bugs!)
  • FTK Imager - Free imageing tool for windows
  • Guymager - Open source version for disk imageing on linux systems

Carving

more at Malware Analysis List

  • bstrings - Improved strings utility
  • bulk_extractor - Extracts informations like email adresses, creditscard numbers and histrograms of disk images
  • photorec - File carving tool

Memory Forensics

more at Malware Analysis List

Network Forensics

more at Malware Analysis List, Forensicswiki's Tool List, awesome-pcaptools and Wireshark Tool and Script List

  • SiLK Tools - SiLK is a suite of network traffic collection and analysis tools
  • Wireshark - The network traffic analysis tool

Windows Artifacts

more at Malware Analysis List

OS X Forensics

Internet Artifacts

  • hindsight - Internet history forensics for Google Chrome/Chromium

Hex Editors

  • 0xED - Native hex editor for OS X
  • Hexinator - Windows Version of Synalyze It!
  • HxD - Small, fast hex editor for Windows
  • iBored - Cross platform, sektor based hex editor
  • Synalyze It! - Hex editor with templates for binary analysis
  • wxHex Editor - Cross platform editor with file comparison

Binary Converter

  • CyberChef - The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis
  • DateDecode - Convert binary data into differnt kinds of date formats

File Grammars

Disk image handling

  • aff4 - AFF4 is an alternative, fast file format
  • libewf - Libewf is a library and some tools to access the Expert Witness Compression Format (EWF, E01)
  • xmount - Convert between different disk image formats

Decryption

Learn forensics

CTFs

Resources

File System Corpora

Twitter

Blogs

Other

Related Awesome Lists

Pull requests and issues with suggestions are welcome!

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.