macOS forensic acquisition made simple
-
Updated
Jun 2, 2026 - Python
macOS forensic acquisition made simple
Automatically create iSCSI targets for all drives except for a boot device
Valhuntir SIFT platform — MCP servers, gateway, Examiner Portal
VMDetect is a Python based Windows VM detection and environment forensics tool that reads ACPI/SMBIOS firmware tables and system artifacts to expose virtual machines, even if people try to hide them!
Decryption tool for LockMyPix android app
Linux last-logon forensic auditing from the binary lastlog database.
Zero-dependency Python CLI for targeted file collection - digital forensics, incident response, and selective backups. Cross-platform, with SHA-256 manifests, chain-of-custody logging, and checkpoint/resume for failing media.
YAFFS2 Forensic Tool – Python-Based Partition Dumper & Recovery
LocBITE - Location, Binary, Image, Temporal, EXIF... is a professional photo forensics and metadata extraction tool for cybersecurity professionals, digital forensic investigators, OSINT analysts, and researchers. It extracts hidden image intelligence including GPS location, EXIF data, timestamps, device information etc
A Python script that automates a forensic investigation on your Linux system!
Production-ready Multimodal Lip Sync Detection & Deepfake Detection System. Detects audio-video synchronization mismatches using deep learning (PyTorch) with a scalable FastAPI-based inference pipeline. Optimized for real-time processing,low false positives, and robust performance on noisy speech segments. Built for video forensics,synthetic media
This repository contains various scripts that can be used to obtain information about IP addresses and MAC addresses.
This script analyzes your docx, xlsx and pdf files for threats without ever executing them!
Search filenames from a structured JSON list across document collections and highlight every match directly in the source files. Compare external SHA-256/MD5 hash lists against a structured JSON list.
PuzzleMender 是一款面向 CTF 和电子数据取证拼图题的 GUI / CLI 自动拼图恢复工具,支持 RDP Cache 碎片、图片切片、自动行列识别和长方形自适应拼接。
ForenScope is an advanced, high-performance forensic analysis tool designed for modern incident response. It leverages a unique hybrid architecture: Python for intelligent orchestration and parsing, and Go for high-speed raw data processing.
forensic tool to analyze ObjectBox database files
A program which allows you to track a user using the same username on popular sites like Instagram, Facebook, Threads and more.
Android Recovery is a read-only command-line tool for acquiring recoverable Trash items and extracting deleted-media from non root android devices over ADB. It runs as Android's shell account, writes only to the host computer, and does not use root or UI automation.
To associate your repository with the forensic-tools topic, visit your repo's landing page and select "manage topics."