#Forensics
Knowledge base entries tagged Forensics.
Tool for analyzing, reverse engineering and extracting firmware images.
Bulk_extractorProgram that extracts features such as email addresses, credit card numbers, URLs, and other types of information from digital evidence files.
ewf-toolsCollection of tools for reading and writing EWF files.
ForensicsTools with forensic purposes.
ForemostRecover files using their headers, footers, and data structures.
FTK-ImagerFTK® Imager is a data preview and imaging tool that lets you quickly assess electronic evidence to determine if further analysis.
PhotorecRecover lost files from harddisk, digital camera and cdrom.
ScalpelRecover files using a header/footer database.
StegCrackerSteganography brute-force utility to uncover hidden data inside files.
SteghideSteganography program that is able to hide data in various kinds of image- and audio-files.
StegseekStegseek is a lightning fast steghide cracker that can be used to extract hidden data from files. It is built as a fork of the original steghide project and, as a result, it is thousands of times faster than other crackers and can run through the entirety of rockyou.txt* in under 2 seconds.
StegsolveStegsolve is a stegano solver for challenges.
UsbripA simple forensics tool with command line interface that lets you keep track of USB device artifacts (i.e., USB event history) on Linux machines.
VolatilityA memory forensics analysis platform.
zbar-toolsScan and decode bar codes (QR) from one or more image files.
zstegDetect stegano-hidden data in PNG & BMP.
TestdiskChecks the partition and boot sectors of your disks. It is very useful in recovering lost partitions.