Hindsight is a free tool for analyzing web artifacts from Google Chrome/Chromium browsers, supporting various types of data such as URLs, download history, cache records, bookmarks, saved passwords, and more, presenting the extracted data in a timeline for forensic analysis. It offers a simple web UI accessible through 'hindsight_gui.py' or 'hindsight_gui.exe' on Windows, allowing users to specify the Chrome profile path for analysis and save results in different formats.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A library for read-only access to QEMU Copy-On-Write (QCOW) image files, supporting multiple versions and compression formats for digital forensics analysis.
A PowerShell-based incident response and live forensic data acquisition tool for Windows hosts.
A library to access the Windows New Technology File System (NTFS) format with read-only support for NTFS versions 3.0 and 3.1.
A digital artifact extraction framework for extracting data from volatile memory (RAM) samples, providing visibility into the runtime state of a system.
Exterro is a data risk management platform that optimizes e-discovery, digital forensics, and cybersecurity compliance operations.
A library and set of tools for accessing and analyzing storage media devices and partitions for forensic analysis and investigation.
A library for accessing and parsing Microsoft Internet Explorer cache files (index.dat) to extract URLs, timestamps, and cached content for digital forensic analysis.
A library for accessing and parsing Extensible Storage Engine (ESE) Database Files used by Microsoft applications like Windows Search, Exchange, and Active Directory for forensic analysis purposes.