The Autopsy Forensic Browser is a graphical interface to the command line digital investigation tools in The Sleuth Kit.
Read moreCategory: Security
Volatility – advanced memory forensics framework
The Volatility Framework is a completely open collection of tools, implemented in Python, for the extraction of digital artifacts from volatile memory (RAM) samples.
Read morerdd – forensic copy software
rdd is a forensic copy program developed at and used by the Netherlands Forensic Institute (NFI). rdd is a file and device copying utility.
Read moreguymager – forensic imager for media acquisition
The forensic imager contained in this package, guymager, was designed to support different image file formats, to be most user-friendly and to run fast.
Read moreSuricata – high performance Network IDS, IPS and Network Security Monitoring engine
Suricata is a threat detection engine, combining intrusion detection, intrusion prevention, network security monitoring and PCAP processing.
Read moreSnort – intrusion prevention system
Snort is an open source network intrusion prevention and detection system utilizing a rule-driven language.
Read moreZeek – powerful network analysis framework
Zeek (formerly known as Bro) is a powerful free and open source framework for network traffic analysis and security monitoring.
Read moreMaltrail – malicious traffic detection system
Maltrail is a malicious traffic detection system, utilizing publicly available (black)lists.
Read moreHostsblock – malware-blocking cronscript
Hostsblock is a POSIX-compatible script for Linux designed to take advantage of the HOSTS file to block malware.
Read morelibredefender – antivirus program
libredefender is an antivirus program. Scanning is implemented with libclamav.
Read moreUnhide – forensic tool to find hidden processes
Unhide is a forensic tool to find hidden processes and TCP/UDP ports by rootkits / LKMs or by another hiding technique.
Read morephpMussel – PHP-based anti-virus anti-trojan anti-malware solution
phpMussel is a PHP script designed to detect trojans, viruses, malware and other threats within files.
Read moreLinux Malware Detect – malware scanner
Linux Malware Detect (LMD) is a malware scanner that is designed around the threats faced in shared hosted environments.
Read moreClamTk – frontend for ClamAV
ClamTk is a frontend for ClamAV (Clam Antivirus).
Read moreYARA – pattern matching swiss knife for malware researchers
YARA is a free and open source tool aimed at (but not limited to) helping malware researchers to identify and classify malware samples.
Read more