Stegextract is a Bash script that extracts hidden files and strings from images, supporting PNG, JPG, and GIF formats. It extracts any trailing data after the image's closing bytes and any hidden files embedded within the image. The tool relies on magic numbers, hexdumps, and binary data alone, and does not support Steganography related to color/pixel/filter/LSB. Note that short byte combinations might create false positives, and manual review of the hexdump may be necessary in complex cases.
FEATURES
SIMILAR TOOLS
A suite of console tools for working with timestamps in Windows with 100-nanosecond precision.
Open source digital forensics tools for analyzing disk images and recovering files.
Windows event log fast forensics timeline generator and threat hunting tool.
A Python-based engine for automatic creation of timelines in digital forensic analysis
A script to assist in creating templates for VirtualBox to enhance VM detection evasion.
LiME is a Linux Memory Extractor tool for acquiring volatile memory from Linux and Linux-based devices, including Android, with features like full memory captures and minimal process footprint.
Turbinia is an open-source framework for automating the running of common forensic processing tools to help with processing evidence in the Cloud.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.