• Autopsy

    A free and open-source digital forensics platform. Autopsy supports computer hard drives and smartphones and can be extended through several add-on modules

  • Caine

    A free and open-source Linux-based digital forensics environment. CAINE offers a user-friendly graphical interface and provides dozens of tools and integrations with other software.

  • Foremost

    A free and open-source Linux-based file recovery tool for forensic analysis. Foremost is intended for law enforcement purposes but supports other use cases.

  • GRR Rapid Response

    GRR Rapid Response: remote live forensics for incident response.

  • Hunting ELK

    The Hunting ELK or simply the HELK is one of the first open source hunt platforms with advanced analytics capabilities such as SQL declarative language, graphing, structured streaming, and even machine learning via Jupyter notebooks and Apache Spark over an ELK stack

  • Sift

    A free and open-source toolkit for forensic analysis and triage. SIFT includes support for dozens of file systems and images and offers tools for incident response.

  • Skipfish

    A free and open-source web application security reconnaissance tool for Kali Linux. Skipfish crawls a website to generate an interactive sitemap and then performs a number of security checks.

  • The Sleuth Kit

    A free and open-source library of digital investigation software. The Sleuth Kit allows users to investigate disk images and analyze volume and system data

  • Velociraptor

    Velociraptor is an open-source endpoint visibility and digital forensics tool. It allows cybersecurity professionals to collect and analyze endpoint data, aiding in threat hunting, incident response, and security investigations.

  • Volatility

    Volatility, an open-source memory forensics framework. Volatility is used for analyzing system memory (RAM) to extract information about running processes, network connections, and other artifacts. It is particularly valuable for incident response and forensics investigations.