Skip to content

Forensic Software & Applications

Explore supported forensic software tools, usage guides, tips & tricks, and direct download links.

CyLR

Alan Orlikoski (Open Source) • Windows

45 34

A lightweight live-response tool for quickly collecting key forensic artifacts from Windows systems.

View Details Download

GRR Rapid Response

Google (Open Source) • Server + Agent (Windows/Linux/macOS)

53 30

Google's remote live forensics and incident response framework based on a client-server architecture.

View Details Download

KAPE

Eric Zimmerman / Kroll • Windows

46 31

Kroll Artifact Parser and Extractor — a fast triage tool for collecting and immediately processing Windows forensic artifacts.

View Details Download

UAC

Thiago Lahr / tclahr (Open Source) • Linux / macOS / AIX / Solaris (shell script)

43 16

Unix-like Artifacts Collector — a pure shell-script live response tool for Unix-like systems.

View Details Download

Velociraptor

Rapid7 (Open Source) • Server + Agent (Windows/Linux/macOS)

41 17

Open-source endpoint monitoring and DFIR platform featuring the highly flexible VQL query language.

View Details Download