Tag Archives: Forensics

CAINE 6.0 – Dark Matter is out!


New release for CAINE 6.0 (Computer Aided INvestigative Environment) is available and can be downloaded on the official website. CAINE is a live distribution designed for forensic analysis, finding hidden and deleted data on disks and detect information to restore the system. 

Rekall Memory Forensic Framework

Rekall Framework is an open source collection of tools that you can use for Forensics analyses. the program is based on Python and allow to have a full visibility for system state memory (RAM). Rekall runs on any platform that

TNS Connection Profiler – Oracle Tool

TNS listener is a service that allows clients application to connect to oracle database. The service running on the database allows to log and control the connection and by default it uses port 1521/1526. Database administrator needs to restrict this

Volafox Mac OS X Memory Analysis Toolkit

Volafox is an open source toolkit that you can use for Mac OS X and BSD forensics. The tool is a python based and allows investigating security incidents and finding information for malwares and any malicious program on the system.

Mobius Forensic Toolkit 0.5.16

Forensic frameworks are important in running investigation and finding the root cause for any incident. open source programs are widely used for creating cases and gathering evidence.  one of the open source framework is Mobius Forensic Toolkit the toolkit is

Browser Forensic Tool v2.0

Phrozen Browser Forensic Tool is a security application that you can use for checking different browsers you use including Microsoft Internet Explorer, Google Chrome, Comodo Dragon, RockMelt and Opera. The application will create a report for navigation history by keywords

LiME – Linux Memory Extractor

phone forensics

Mobile platform security tools are increasing and we have more open source tools that allow to conduct forensic analyses on phone devices. if you want to investigate Android operating system you can use LiME. LiME (formerly DMD) allows to investigate