AVML
—Acquire volatile memory on Linux.
Incident response and evidence collection.
99 tools indexed
Acquire volatile memory on Linux.
Cross-platform forensic artifact collector in Rust
File triage and malware analysis pipeline.
Digital forensics platform.
Cloud forensics for Azure / O365.
Firmware analysis tool.
Account search across 600+ networks.
User-mode x86_64 emulator for malware analysis.
Java 8+ JAR and Android APK RE suite.
Malware sandbox + payload extraction.
CISA's DFIR tool.
Tripwire tokens for free.
Hunt across Windows event logs at speed.
Automatic cipher/encoding/hash cracker.
Observable analysis engine for TheHive.
GUI reverse engineering on Rizin.
The cyber Swiss army knife.
Python bytecode decompiler.
Hunt PowerShell attacks in Windows logs.
Cross-platform file type identifier.
Forensic artifact framework from Fox-IT.
Network forensic analysis framework.
Windows ETW provider browser and trace inspector.
Malware analysis automation.