Back to Topics Directory
Topic Hub

#forensics (30 Repositories)

Ranked open-source repositories tagged with #forensics, scored by pull request acceptance likelihood and maintainer engagement velocity.

Topic Avg Merge Rate

26.2%

Avg Review Latency

9.7h

Filter by language

30 repositories tagged #forensics

S TierRust 196

Yamato-Security/suzaku

Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.

95.7%
Merge Rate
4h
First Review
100%
1st-Timers
4
Maintainers
B TierGo 240

mvt-project/androidqf

androidqf (Android Quick Forensics) helps quickly gathering forensic evidence from Android devices, in order to identify potential traces of compromise.

88.9%
Merge Rate
1h
First Review
100%
1st-Timers
1
Maintainers
A TierKotlin 188

BARGHEST-ngo/MESH

Wireless ADB, over the internet; not just local Wi-Fi. An encrypted, censorship-resistant mesh VPN making remote forensics and network monitoring seamless.

91.1%
Merge Rate
22h
First Review
100%
1st-Timers
3
Maintainers
A TierPython 14.7k 26 GFIs

prowler-cloud/prowler

Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.

79.6%
Merge Rate
3d
First Review
54%
1st-Timers
34
Maintainers
B TierRust 184

trailofbits/mquire

Zero-dependency Linux memory forensics, leveraging kernel-embedded BTF and kallsyms for type-aware memory analysis without external debug info.

84.0%
Merge Rate
3d
First Review
100%
1st-Timers
1
Maintainers
B TierC++ 54.6k

WerWolv/ImHex

🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.

72.6%
Merge Rate
11h
First Review
63%
1st-Timers
28
Maintainers
B TierRust 373

mandiant/macos-UnifiedLogs

A cross platform parser for Apple UnifiedLogs!

100.0%
Merge Rate
10h
First Review
0%
1st-Timers
1
Maintainers
B TierC 3.1k

sleuthkit/sleuthkit

The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file system data. The library can be incorporated into larger digital forensics tools and the command line tools can be directly used to find evidence.

75.0%
Merge Rate
5h
First Review
0%
1st-Timers
1
Maintainers
B TierShell 171

Am0rphous/Awesome

Awesome collection of resources 😎 Work in progress🔥

50.0%
Merge Rate
13h
First Review
0%
1st-Timers
1
Maintainers
B TierShell 1.4k

tclahr/uac

UAC is a powerful and extensible incident response tool designed for forensic investigators, security analysts, and IT professionals. It automates the collection of artifacts from a wide range of Unix-like systems, including AIX, ESXi, FreeBSD, Linux, macOS, NetBSD, NetScaler, OpenBSD and Solaris.

50.0%
Merge Rate
4d
First Review
0%
1st-Timers
1
Maintainers
D TierPython 1.5k

RyanDFIR/hindsight

Browser forensics tool for Google Chrome, other Chromium-based browsers, and Mozilla Firefox

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierC# 333

EricZimmerman/MFTECmd

Parses $MFT from NTFS file systems

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierC 478

rafael-santiago/pig

A Linux packet crafting tool.

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierPython 793

google/turbinia

Automation and Scaling of Digital Forensics Tools

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierJavaScript 188

cgosec/Blauhaunt

A tool collection for filtering and visualizing logon events. Designed to help answering the "Cotton Eye Joe" question (Where did you come from where did you go) in Security Incidents and Threat Hunts

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierGo 306

botherder/androidqf

androidqf (Android Quick Forensics) helps quickly gathering forensic evidence from Android devices, in order to identify potential traces of compromise.

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierPython 610

AnonCatalyst/Ominis-OSINT

This Python application is an OSINT (Open Source Intelligence) tool called "Ominis OSINT - Web Hunter." It performs online information gathering by querying Google for search results related to a user-inputted query. The tool extracts relevant information such as titles, URLs, and potential mentions of the query in the results.

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierPOPowerShell 282

ANSSI-FR/DFIR-O365RC

PowerShell module for Office 365 and Azure log collection

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierJUJupyter Notebook 2.9k

frankwxu/digital-forensics-lab

Free hands-on digital forensics labs for students and faculty

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierC 1.3k

mozillazg/ptcpdump

Process-aware, eBPF-based tcpdump

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierHTML 271

AnonCatalyst/Coeus-OSINT-ToolBox

Coeus 🌐 is an OSINT ToolBox empowering users with tools for effective intelligence gathering from open sources. From social media monitoring 📱 to data analysis 📊, it offers a centralized platform for seamless OSINT investigations.

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierPython 186

bb1nfosec/Information-Security-Tasks

This repository is created only for infosec professionals whom work day to day basis to equip ourself with uptodate skillset, We can daily contribute daily one hour for day to day tasks and work on problem statements daily, Please contribute by providing problem statements and solutions

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierPython 110

teamdfir/sift-saltstack

Salt States for Configuring the SIFT Workstation

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierC++ 332

BSI-Bund/RdpCacheStitcher

RdpCacheStitcher is a tool that supports forensic analysts in reconstructing useful images out of RDP cache bitmaps.

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierRust 389

pandaadir05/ghost

Detects process injection and memory manipulation used by malware. Finds RWX regions, shellcode patterns, API hooks, thread hijacking, and process hollowing. Built in Rust for speed. Includes CLI and TUI interfaces.

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierJavaScript 281

ChmaraX/forensix

Google Chrome forensic tool to process, analyze and visualize browsing artifacts

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierC# 296

ShaneK2/inVtero.net

inVtero.net: A high speed (Gbps) Forensics, Memory integrity & assurance. Includes offensive & defensive memory capabilities. Find/Extract processes, hypervisors (including nested) in memory dumps using microarchitechture independent Virtual Machiene Introspection techniques

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierPython 498

JPCERTCC/MalConfScan

Volatility plugin for extracts configuration data of known malware

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierC++ 326

Gregwar/fatcat

FAT filesystems explore, extract, repair, and forensic tool

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
D TierPython 142

wanshuiyin/Anti-Autoresearch

Don't trust an autoresearch paper at face value. Reviewer-side integrity forensics (self-consistency + fabrication), deterministic verdict. 61 signals: 46 integrity hack-patterns (families A–H, verdict-bearing) + 13 zero-weight AI writing-style impressions (AIS) + 2 advisory. Not an opaque AI-text classifier. The dual of ARIS.

0.0%
Merge Rate
-
First Review
0%
1st-Timers
0
Maintainers
Best Forensics Open Source Repositories & C-Rank™ | GetMerged