Loading...
Windows Forensics groups the cybersecurity tools focused on windows forensics, pulled from across every category so you can compare every option in one place. Filter by category or pricing to narrow the field. Independent and vendor-neutral: our scores and rankings are earned, never bought — sponsored placement is always labeled.
Browse 15 cybersecurity solutions, with 0 security professionals searching monthly
Structured hands-on labs and learning tracks for blue team and SOC skills
Service that detects hidden breaches and indicators of compromise across IT environments
Sandbox platform for interactive malware detonation, record/replay, and forensic analysis
Company offering digital forensics products, investigation services, and cyber training
Hardware write-blockers and forensic tools for secure evidence acquisition.
Digital forensics platform for mobile & endpoint evidence extraction and analysis.
Digital forensics platform for evidence acquisition, analysis, and DFIR.
Standalone DFIR data collector for Windows systems with adaptive collection
A PowerShell-based DFIR automation tool that streamlines artifact and evidence collection from Windows machines for digital forensic investigations.
A digital forensics tool that extracts and analyzes Windows AppCompat and AmCache registry data for enterprise-scale forensic investigations.
Automated tool for parsing Windows registry hives and extracting valuable information for forensic analysis.
A set of scripts for collecting forensic data from Windows and Unix systems respecting the order of volatility.
Tool for live forensics acquisition on Windows systems, collecting artefacts for early compromise detection.
A library for accessing and parsing Windows NT Registry File (REGF) format files, designed for digital forensics and registry analysis applications.