LiMEaide v2.0
Python tool for remotely or locally dumping RAM of a Linux client for digital forensics analysis.
Rifiuti2 is a tool for analyzing Windows Recycle Bin INFO2 file. It can extract file deletion time, original path, size of deleted files, and determine if the trashed files have been permanently removed. The tool is designed to be portable and runs on the command line environment, offering various options for detailed analysis.
Python tool for remotely or locally dumping RAM of a Linux client for digital forensics analysis.
A bash script for automating Linux swap analysis for post-exploitation or forensics purposes.
A library for working with Windows NT data types, providing access and manipulation functions.
Tool for parsing NTFS journal files, $Logfile, and $MFT.
Python script to parse the NTFS USN Change Journal.
A cross-platform registry hive editor for forensic analysis with advanced features like hex viewer and reporting engine.