Digital Forensics and Incident Response

Digital Forensics and Incident Response (DFIR) tools for digital forensic analysis, evidence collection, malware analysis, and cyber incident investigation.

Explore 492 curated cybersecurity tools, with 14,802+ visitors searching for solutions

FEATURED

Proton Pass Logo

Password manager with end-to-end encryption and identity protection features

NordVPN Logo

VPN service providing encrypted internet connections and privacy protection

Mandos Fractional CISO Services Logo

Fractional CISO services for B2B companies to accelerate sales and compliance

Get Featured

Feature your product and reach thousands of professionals.

yextend Logo

yextend extends Yara's functionality by automatically handling archived and compressed content inflation, enabling pattern matching on files buried within multiple layers of archives.

0
MemProcFS Logo

View physical memory as files in a virtual file system for easy memory analysis and artifact access.

0
LiMEaide v2.0 Logo

Python tool for remotely or locally dumping RAM of a Linux client for digital forensics analysis.

0
Kharon Project Logo

Studying Android malware behaviors through Information Flow monitoring techniques.

0
PinCTF Logo

PinCTF is a Python wrapper tool that uses Intel's Pin framework to instrument binaries and count instructions for reverse engineering analysis.

0
Pancake Viewer Logo

A DFVFS backed viewer project with a WxPython GUI, aiming to enhance file extraction and viewing capabilities.

0
DMG2IMG Logo

DMG2IMG converts Apple compressed DMG archives to standard HFS+ image files supporting zlib, bzip2, and LZFSE compression formats.

0
NTFS-Linker Logo

Tool for parsing NTFS journal files, $Logfile, and $MFT.

0
Chaosreader Logo

Chaosreader is a tool for ripping files from network sniffing dumps and replaying various protocols and file transfers.

0
PANORAMA Logo

Generate comprehensive reports about Windows systems with detailed system, security, networking, and USB information.

0
Potiron Logo

Normalize, index, enrich, and visualize network capture data using Potiron.

0
capa Logo

Capa is a malware analysis tool that detects capabilities in executable files by analyzing PE, ELF, .NET modules, shellcode, and sandbox reports to identify potential malicious behaviors with ATT&CK framework mapping.

0