The SOLVE-IT knowledge base for digital forensics
☆78Apr 26, 2026Updated last week
Alternatives and similar repositories for solve-it
Users that are interested in solve-it are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Python script for carving Bitlocker VMK keys☆26Feb 4, 2026Updated 3 months ago
- Hundred Days of Yara Challenge☆12Jun 21, 2022Updated 3 years ago
- Parser for Sdba memory pool tags☆21Jul 16, 2021Updated 4 years ago
- A series of python scripts to extract information from SQLite Data Files☆21Nov 15, 2025Updated 5 months ago
- Extract files from ADB devices on Windows, Linux and MacOS. Mostly a wrapper for adbutils.☆48Updated this week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆26Feb 19, 2026Updated 2 months ago
- mister-skinnylegs is an open plugin framework for parsing website/webapp artifacts in browser data. It currently provides a command line …☆20Nov 14, 2025Updated 5 months ago
- An efficient tool for search files, directories, and alternate data streams directly from NTFS image files.☆28Apr 14, 2026Updated 3 weeks ago
- Incident Response documents and tooling☆115Dec 23, 2025Updated 4 months ago
- Tools and scripts to deploy and manage OpenRelik instances☆16Mar 23, 2026Updated last month
- Scripts to for ready-to-use Velociraptor instance deployment in Azure☆14Jun 27, 2023Updated 2 years ago
- Google Filestream Forensic Tool☆22Mar 10, 2022Updated 4 years ago
- A repository containing the research output from my GCFE Gold Paper which compared Windows 10 and Windows 11.☆27Jul 27, 2022Updated 3 years ago
- This tool aims at parsing Microsoft Protection logs to provide relevant data to forensic analysts during incident responses.☆22Sep 30, 2022Updated 3 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Forensic Imaging quickstarts!☆13Aug 12, 2022Updated 3 years ago
- ☆24Mar 12, 2025Updated last year
- Queries to use on the store.cloudphotodb database. Provides you with iCloud Photos Sync directions and other information☆12Sep 4, 2023Updated 2 years ago
- A lightweight C++/C AFF4 reader library☆15Feb 5, 2026Updated 3 months ago
- The official repo for a project involving a crowdsourced DFIR book. The main purpose of this book is to give anyone interested an opportu…☆220Dec 30, 2025Updated 4 months ago
- Contains compiled binaries of Volatility☆36May 18, 2025Updated 11 months ago
- A lightweight Windows Prefetch file parser to extract programs' execution history☆69Jan 12, 2026Updated 3 months ago
- Various PowerShells scripts I've made (or others have made) to automate some of the boring stuff in my everyday DFIR journey!☆53Jan 9, 2026Updated 3 months ago
- Windows Forensics Salt States☆22Apr 25, 2026Updated last week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A high-speed forensic timeline engine for Windows forensic artifact CSV output built for DFIR investigators. Quickly consolidate CSV outp…☆322Feb 26, 2026Updated 2 months ago
- Aralez is a triage tool for Windows and Linux that automates the collection of system information, network/process data, and files.☆24Updated this week
- Scripts for rapid Windows endpoint "tactical triage" and investigations with Velociraptor and KAPE☆195Apr 1, 2026Updated last month
- ☆67Jan 8, 2026Updated 3 months ago
- Official OSSEC docker container☆14Jun 11, 2021Updated 4 years ago
- Tools for Incident Response and Malware Analysis☆11Feb 9, 2025Updated last year
- ☆11Aug 3, 2018Updated 7 years ago
- Deploy multiple instances of Nessus in docker containers easily☆20Mar 31, 2021Updated 5 years ago
- Linux Baseline and Forensic Triage Tool - BETA☆59Mar 10, 2026Updated last month
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- http://moaistory.blogspot.com/2016/08/ie10analyzer.html☆20Jul 20, 2024Updated last year
- A collection of Script for Red Team & Incidence Response☆11Jun 30, 2022Updated 3 years ago
- Repository for sharing examples of our artifacts data and for use in new analyst recruitment.☆110Apr 22, 2025Updated last year
- Python script to walk a folder or a zip file for SQLite Databases☆37Sep 20, 2023Updated 2 years ago
- AFF4 Standard Documents☆29Feb 4, 2022Updated 4 years ago
- Vault of Windows Registry forensic artifacts☆30Nov 12, 2025Updated 5 months ago
- CyberChef update scripts in PowerShell & Bash☆19Apr 22, 2024Updated 2 years ago