c-aff4
An open source format for storing digital evidence and data, with a C/C++ library for creating, reading, and manipulating AFF4 images.
AMExtractor is a tool that can dump out the physical content of an Android device without the need for kernel source code, using /dev/kmem to run code in kernel space. It has been tested on various devices like Galaxy Nexus, Nexus 4, Nexus 5, and Samsung Galaxy S4, providing an alternative to LKM based tools like LiME.
An open source format for storing digital evidence and data, with a C/C++ library for creating, reading, and manipulating AFF4 images.
A collaborative forensic timeline analysis tool for organizing and analyzing data with rich annotations and comments.
A simple Golang application for storing NIST National Software Reference Library Reference Data Set (NSRL RDS) with md5 and sha1 hash lookup searches.
A next-generation crawling and spidering framework for extracting data from websites
A collection of PowerShell modules for artifact gathering and reconnaissance of Windows-based endpoints.
Windows event log fast forensics timeline generator and threat hunting tool.