thereal-configmgr / awesome-forensics

A curated list of awesome forensic analysis tools and resources

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Awesome Forensics

Awesome

A curated list of awesome forensic analysis tools and resources. Inspired by awesome-malware-analysis.


Collections

Tools

Distributions

  • deft - Linux distribution for forensic analysis

Frameworks

Live forensics

  • mig - Distributed & real time digital forensics at the speed of the cloud
  • grr - GRR Rapid Response: remote live forensics for incident response

Imageing

  • FTK Imager - Free imageing tool
  • dcfldd - Improved version of dd
  • dc3dd - Different improved version of dd

Carving

Memory Forensics

Network Forensics

  • Wireshark - The network traffic analysis tool

Windows Artifacts

OS X Forensics

Hex Editors

  • HxD - Small, fast hex editor for Windows
  • 0xED - Native hex editor for OS X
  • wxHex Editor - Cross platform editor with file comparison
  • iBored - Cross platform, sektor based hex editor
  • Synalyze It! - Hex editor with templates for binary analysis
  • Hexinator - Windows Version of Synalyze It!

Binary Converter

  • DateDecode - Convert binary data into differnt kinds of date formats

File Grammars

Disk image handling

  • xmount - Convert between different disk image formats

Decryption

Learn forensics

CTFs

Resources

File System Corpora

Websites

Twitter

Blogs

Other

Related Awesome Lists

Pull requests and issues with suggestions are welcome!

About

A curated list of awesome forensic analysis tools and resources

License:Creative Commons Zero v1.0 Universal