libolecf is a library designed to access and parse OLE 2 Compound File (OLECF) format files. The library enables reading of various file types that use the OLECF format, including certain versions of Microsoft Office documents, thumbs.db files, and other applications that utilize this compound document format. The library provides programmatic access to the internal structure of OLECF files, allowing developers and forensic analysts to extract and examine the contents of these compound documents. It supports parsing the directory structure, streams, and metadata contained within OLECF files. Currently in alpha development status, the library is released under the LGPLv3+ license. Future development plans include implementing multi-threading support to improve performance when processing large files or multiple documents simultaneously. The library serves as a foundation for digital forensics tools and applications that need to analyze Microsoft Office documents and other files using the OLE 2 Compound File format for evidence collection and examination purposes.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A library for accessing and parsing Extensible Storage Engine (ESE) Database Files used by Microsoft applications like Windows Search, Exchange, and Active Directory for forensic analysis purposes.
A PowerShell-based incident response and live forensic data acquisition tool for Windows hosts.
A command-line tool for creating hex dumps, converting between binary and human-readable representations, and patching binary files.
Exterro is a data risk management platform that optimizes e-discovery, digital forensics, and cybersecurity compliance operations.
Free software for extracting Microsoft cabinet files, supporting all features and formats of Microsoft cabinet files and Windows CE installation files.
Zenduty's platform provides real-time operational health monitoring and incident response orchestration to improve incident response times and build a solid on-call culture.
A library to access and parse Windows XML Event Log (EVTX) format, useful for digital forensics and incident response.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.