Hindsight
Hindsight is a free tool for analyzing web artifacts from Google Chrome/Chromium browsers and presenting the data in a timeline for forensic analysis.
extundelete is a utility that can recover deleted files from an ext3 or ext4 partition. The ext3 and ext4 file systems are the most common default file systems in Linux distributions like Mint, Mageia, or Ubuntu. extundelete uses information stored in the partition's journal to attempt to recover a file that has been deleted from the partition. There is no guarantee that any particular file will be able to be undeleted, so always try to have a good backup system in place, or at least put one in place after recovering your files! The latest version of extundelete is 0.2.4, which was released in January 2013. extundelete has been recovering deleted files since April 2009, when the first version was released.
Hindsight is a free tool for analyzing web artifacts from Google Chrome/Chromium browsers and presenting the data in a timeline for forensic analysis.
Custom built application for asynchronous forensic data presentation on an Elasticsearch backend, with upcoming features like Docker-based installation and new UI rewrite in React.
Web interface for the Volatility Memory Forensics Framework
A shell script for basic forensic collection of various artefacts from UNIX systems.
Second-order subdomain takeover scanner
Analyse a forensic target to find and report files found and not found in hashlookup CIRCL public service.