From 76762d3d7789247a83edda4a9be6442778a6679d Mon Sep 17 00:00:00 2001 From: Malfurious Date: Thu, 22 Feb 2024 02:04:44 -0500 Subject: Consolidate forensics links and add FTKImager and volatility Signed-off-by: Malfurious --- docs/forensics/forensics_links.txt | 17 +++++++++++++++++ 1 file changed, 17 insertions(+) create mode 100644 docs/forensics/forensics_links.txt (limited to 'docs/forensics/forensics_links.txt') diff --git a/docs/forensics/forensics_links.txt b/docs/forensics/forensics_links.txt new file mode 100644 index 0000000..e72f578 --- /dev/null +++ b/docs/forensics/forensics_links.txt @@ -0,0 +1,17 @@ +# Online stego solver and image file analyzer +https://www.aperisolve.fr/ +https://github.com/Zeecka/AperiSolve + +# Online visual data transformation pipeline editor +https://gchq.github.io/CyberChef/ +https://github.com/gchq/CyberChef + +# Online QR code recovery tool +https://merricx.github.io/qrazybox/ + +# Read / export from *.ad1 disk images +https://www.exterro.com/digital-forensics-software/ftk-imager + +# Analyze memory dumps (Windows, maybe Linux) +https://www.golinuxcloud.com/analyzing-volatility-memory-dump/ +https://github.com/volatilityfoundation/volatility -- cgit v1.2.3