Forensia Logo

Forensia

0
Free
Visit Website

Forensia is an anti-forensics tool designed for Red Teamers to erase footprints in the post-exploitation phase, reducing payload burnout and increasing detection countdown. It can be used to test the capabilities of incident response/forensics teams by unloading Sysmon driver, Gutmann method file shredding, USNJrnl disabler, prefetch disabler, log eraser, event log disabler, user assist update time disabler, access time disabler, clear recent items, clear Shim cache, clear RecentFileCache, clear ShellBag, delete Windows Defender quarantine files, file melting capabilities, and more. It also includes an important update that adds the ability to clear recent items, Shim cache, RecentFileCache, ShellBag, and quarantine files, with upcoming features like USNJrnl execution on all disk drives, unallocated space rewriting, and further enhancements. Credits to various contributors are acknowledged.

FEATURES

ALTERNATIVES

Modern digital forensics and incident response platform with comprehensive tools.

GUI-based memory forensic capture tool for cyber forensics and cyber crime investigation.

mXtract is a Linux-based tool for memory analysis and dumping with regex pattern search capabilities.

A tool for parsing and extracting information from the Master File Table of NTFS file systems.

A powerful reverse engineering framework

A tool for discovering, analyzing, and remedying sensitive data

A comprehensive guide to incident response and computer forensics, covering the entire lifecycle of incident response and remediation.

A network forensics tool for visualizing packet captures as network diagrams with detailed analysis.

PINNED