The SOLVE-IT knowledge base for digital forensics
☆60Mar 2, 2026Updated this week
Alternatives and similar repositories for solve-it
Users that are interested in solve-it are comparing it to the libraries listed below
Sorting:
- Python script for carving Bitlocker VMK keys☆26Feb 4, 2026Updated last month
- Tools and scripts to deploy and manage OpenRelik instances☆16Updated this week
- A series of python scripts to extract information from SQLite Data Files☆21Nov 15, 2025Updated 3 months ago
- Incident Response documents and tooling☆113Dec 23, 2025Updated 2 months ago
- Tools for Incident Response and Malware Analysis☆11Feb 9, 2025Updated last year
- This tool aims at parsing Microsoft Protection logs to provide relevant data to forensic analysts during incident responses.☆21Sep 30, 2022Updated 3 years ago
- Hundred Days of Yara Challenge☆12Jun 21, 2022Updated 3 years ago
- ☆24Feb 19, 2026Updated last week
- Scripts to for ready-to-use Velociraptor instance deployment in Azure☆14Jun 27, 2023Updated 2 years ago
- A utility to process the iOS Cache.sqlite database and create a timelined KML map for use in Google Earth☆30Dec 3, 2024Updated last year
- Extract files from ADB devices on Windows, Linux and MacOS. Mostly a wrapper for adbutils.☆38Feb 26, 2026Updated last week
- Forensic Imaging quickstarts!☆13Aug 12, 2022Updated 3 years ago
- Vault of Windows Registry forensic artifacts☆28Nov 12, 2025Updated 3 months ago
- mister-skinnylegs is an open plugin framework for parsing website/webapp artifacts in browser data. It currently provides a command line …☆18Nov 14, 2025Updated 3 months ago
- Deploy multiple instances of Nessus in docker containers easily☆20Mar 31, 2021Updated 4 years ago
- Aralez is a triage tool for Windows and Linux that automates the collection of system information, network/process data, and files.☆22Dec 11, 2025Updated 2 months ago
- Parser for Sdba memory pool tags☆21Jul 16, 2021Updated 4 years ago
- CyberChef update scripts in PowerShell & Bash☆17Apr 22, 2024Updated last year
- Contains compiled binaries of Volatility☆36May 18, 2025Updated 9 months ago
- Basic guide for performing a Physical PenTest - Nist 800-12, 800-53, 800-115, 800-152☆22Jan 1, 2023Updated 3 years ago
- Windows Forensics Salt States☆21Feb 23, 2026Updated last week
- Automating the baseline logging settings found here: https://nullsec.us/windows-baseline-logging/☆20Jan 28, 2025Updated last year
- A repository containing the research output from my GCFE Gold Paper which compared Windows 10 and Windows 11.☆27Jul 27, 2022Updated 3 years ago
- Data breaches, Leaks, Malwares Forums List <Please Use Vpn/TOR don't click on Link directly bad OPSEC>☆59Sep 18, 2025Updated 5 months ago
- The official repo for a project involving a crowdsourced DFIR book. The main purpose of this book is to give anyone interested an opportu…☆218Dec 30, 2025Updated 2 months ago
- An efficient tool for search files, directories, and alternate data streams directly from NTFS image files.☆28Feb 21, 2026Updated last week
- Linux Baseline and Forensic Triage Tool - BETA☆57Sep 8, 2022Updated 3 years ago
- A high-speed forensic timeline engine for Windows forensic artifact CSV output built for DFIR investigators. Quickly consolidate CSV outp…☆308Updated this week
- CarbonBlack EDR detection rules and response actions☆73Sep 10, 2024Updated last year
- A lightweight Windows Prefetch file parser to extract programs' execution history☆66Jan 12, 2026Updated last month
- Browse Windows Prefetch versions: 17,23,26,30v1/2,31 & some of SuperFetch .7db/.db's☆64Dec 18, 2024Updated last year
- An open source project aimed to replicate the Windows SIFT Machine and tools used during SANS Courses minus any payware software.☆25Oct 18, 2023Updated 2 years ago
- ☆31May 31, 2022Updated 3 years ago
- Browser Reviewer is a portable forensic tool for analyzing user activity in Firefox and Chrome-based browsers. It extracts and displays b…☆55Oct 10, 2025Updated 4 months ago
- A tool to use novel locations to extract metadata from Office documents.☆64Jun 20, 2023Updated 2 years ago
- ☆75Apr 3, 2025Updated 11 months ago
- macOS Artifacts☆33Mar 2, 2025Updated last year
- Rekall Forensics and Incident Response Framework with rVMI extensions☆33Mar 25, 2021Updated 4 years ago
- Describing and documenting the process of deploying a HomeLab for security research and training☆43May 2, 2025Updated 10 months ago