A list of free and open forensics analysis tools and other resources
-
Updated
Apr 20, 2025
A list of free and open forensics analysis tools and other resources
Collaborative Incident Response platform
MacOS forensic acquisition made simple
C# Library and research notes for Windows 11 Notepad State Files
Automatically create iSCSI targets for all drives except for a boot device
macos-collector - Automated Collection of macOS Forensic Artifacts for DFIR
A collection of PowerShell scripts for analyzing macOS Forensic Artifacts
Is a portable forensic tool for analyzing Windows logs, pre-organized according to the methodology outlined in this job: https://cybersecuritynews.com/windows-event-log-analysis/, to quickly highlight key forensic artifacts.
Digital Forensics Essentials (DFE)
Decryption tool for LockMyPix android app
Reverse Engineering the Tabstate files for Windows Notepad
A real-time Sigma rule scanner
DFLER: Drone Flight Log Entity Recognizer to Support Forensic Investigation on Drone Device
A Python tool to analyze and export login activity from /var/log/lastlog for security.
A tool that detects files and directories that may be hidden by trojan and rootkits on Unix platforms
A digital forensics educational game to promote the procedures carried out within a digital investigation - created using Godot
Binary Analysis of a Saved Notepad Tab
This repository contains various scripts that can be used to obtain information about IP addresses and MAC addresses.
ASCII and Unicode string carving tool.
Add a description, image, and links to the forensic-tools topic page so that developers can more easily learn about it.
To associate your repository with the forensic-tools topic, visit your repo's landing page and select "manage topics."