Forensia is an anti-forensics tool designed for Red Teamers to erase footprints in the post-exploitation phase, reducing payload burnout and increasing detection countdown. It can be used to test the capabilities of incident response/forensics teams by unloading Sysmon driver, Gutmann method file shredding, USNJrnl disabler, prefetch disabler, log eraser, event log disabler, user assist update time disabler, access time disabler, clear recent items, clear Shim cache, clear RecentFileCache, clear ShellBag, delete Windows Defender quarantine files, file melting capabilities, and more. It also includes an important update that adds the ability to clear recent items, Shim cache, RecentFileCache, ShellBag, and quarantine files, with upcoming features like USNJrnl execution on all disk drives, unallocated space rewriting, and further enhancements. Credits to various contributors are acknowledged.
Common questions about Forensia including features, pricing, alternatives, and user reviews.
Forensia is Anti-forensics tool for Red Teamers to erase footprints and test incident response capabilities. It is a Security Operations solution designed to help security teams with Post Exploitation, Red Team, Sysmon.
Forensia is a free Security Operations tool. This makes it accessible for organizations of all sizes, from startups to enterprises. Visit https://github.com/PaulNorman01/Forensia/ for download and installation instructions.
Popular alternatives to Forensia include:
Compare these tools and more at https://cybersectools.com/categories/security-operations
Forensia is for security teams and organizations that need Post Exploitation, Red Team, Sysmon, Anti Forensics. It's particularly suitable for small to medium-sized teams looking for cost-effective solutions. Other Security Operations tools can be found at https://cybersectools.com/categories/security-operations
Red team toolkit for EDR evasion, initial access, and post-exploitation.
Bundled offensive security suites combining pen testing, red teaming, and VM.