Skip to content

Forensic Software & Applications

Explore supported forensic software tools, usage guides, tips & tricks, and direct download links.

FLOSS

Mandiant / FLARE Team (Open Source) • Windows / Linux / macOS

42 29

FLARE Obfuscated String Solver — a tool for extracting hidden/obfuscated strings from malware samples.

View Details Download

Foremost

U.S. Air Force OSI (Open Source) • Linux

46 33

Open-source file carving tool for recovering files based on headers, footers, and internal data structures.

View Details Download
v4.7.1

FTK Imager

Exterro / AccessData • Windows

72 62

Industry-standard forensic imaging tool for bit-stream imaging (E01, RAW/DD) and evidence preview without altering the original data.

View Details Download

GRR Rapid Response

Google (Open Source) • Server + Agent (Windows/Linux/macOS)

53 30

Google's remote live forensics and incident response framework based on a client-server architecture.

View Details Download

Guymager

Guy Voncken (Open Source) • Linux

43 27

Free forensic imaging application with a graphical interface for Linux, supporting E01, dd, and AFF formats.

View Details Download

HashCalc

SlavaSoft • Windows

36 24

Free hash calculator computing multiple checksum algorithms (MD5, SHA-1/256/512, CRC32, and more) at once.

View Details Download

HashMyFiles

NirSoft • Windows

40 26

NirSoft's portable utility for calculating and comparing MD5/SHA1/CRC32/SHA256 hashes across many files at once.

View Details Download

Hayabusa

Yamato Security (Open Source) • Windows / Linux / macOS

39 27

Rust-based Windows event log threat hunting and forensics tool with built-in Sigma rule support.

View Details Download

Hindsight

Ryan Benson (Open Source) • Windows / Linux / macOS (Python)

40 31

Open-source tool to extract and analyze browsing history from Chromium-based browsers.

View Details Download

iLEAPP

Alexis Brignoni (Open Source) • Windows / Linux / macOS (Python)

43 27

Open-source parser for extracting and analyzing logs, events, and plists from iOS forensic extractions.

View Details Download

KAPE

Eric Zimmerman / Kroll • Windows

46 31

Kroll Artifact Parser and Extractor — a fast triage tool for collecting and immediately processing Windows forensic artifacts.

View Details Download

libimobiledevice

libimobiledevice Project (Open Source) • Windows / Linux / macOS

39 28

Cross-platform open-source library for communicating with iOS devices without requiring a jailbreak.

View Details Download