awesome forensicstools: GitHub File Free Download

Awesome list of digital forensic tools Awesome

Collection of digital forensics tools for verification, investigations, diagnostics and so on.
Composed from: Bellingcat’s Digital Forensics Tools list https://docs.google.com/document/d/1BfLPJpRtyq4RFtHJoNpvWQjmGnyVkfE2HYoICKOGguA, Forensics Wiki http://www.forensicswiki.org
and assorted collections of forensic resources online.

All contributions welcome. Please propose changes using github issue https://github.com/ivbeg/awesome-forensictools/issues or by direct writing pull request.

Table of contents / Содержание

Collections of tools

Satellite and mapping services

Geobased searches

Geobased search on:

Documents metadata

  • Hachoir3 [https://github.com/haypo/hachoir3] (https://github.com/haypo/hachoir3). Python library for metadata extraction from binary streams including MS Office documents
  • Forensic wiki list of metadata extractors
  • Metadata extractor github

Images, videos and metadata

Image and videos tools

Photo/video metadata (EXIF and e.t.c.)

Guides

Social media

Multiple social networks

  • NacheChk. Same name check over dozens of social networks namechk.com

Facebook

LinkedIn

  • Socilab, allows users to visualise and analyse your own LinkedIn
    network,
    socilab.com 

Snapchat

  • Snap Map, a searchable map of geotagged snaps, via the mobile
    application, read
    here how.

Tumblr

Twitter

Geobased searches

  • On Twitter, insert this is search box:
    geocode:[coordinates],[radius-km], for example:
    geocode:36.222285,43.998233,2km

  • Onemilliontweetmap, maps tweets per location up to 6hrs old, and has
    a keyword search option,
    onemilliontweetmap.com 

  • Union Metrics, find the reach of tweets,
    tweetreach.com/ 

Advanced Search Operators:

  • term1 term2 – tweets with both term1 and term2 in any order (e.g.
    twitter metrics)
  • term1 OR term2 – tweets with either term1 or term2 (e.g. analytics
    OR metrics)
  • “term1 term2” – tweets with the phrase “term1 term2” (e.g. “twitter
    metrics”)
  • term1 -term2 – tweets with term1 but not term2 (e.g. twitter
    -facebook)
  • @username – tweets mentioning or RTing a specific user (e.g.
    @unionmetrics)
  • from:username – tweets from a specific Twitter user (e.g.
    from:unionmetrics)
  • since:YYYY-MM-DD – tweets after a specific date in UTC (e.g.
    since:2017-03-30)
  • until:YYYY-MM-DD – tweets before a specific date in UTC (e.g.
    until:2017-03-30)

YouTube

Transport

Aircraft

Boats

Trains

  • France, full interactive map of the French railway system with live
    positions of trains, plus accuracy of schedule,
    raildar.fr/#lat=46.810&lng=6.880&zoom=6
  • Germany, full interactive map of current positions of Deutsche
    Bahn railway network,
    apps-bahn.de/bin/livemap/query-livemap.exe/dn?L=vs_livefahrplan&livemap
     
  • Netherlands, full interactive map of the Dutch railway system,
    including live positions of trains,
    http://spoorkaart.mwnn.nl 

Misc

Date and time

Whois, IP lookups, website analysis

People search

Networks

Archiving

  • Archive.is, let’s you archive any webpage.

  • Let’s say you want to look whether old IS reports were archived, use
    a Google advanced search: make an <IS search term> justpaste.it
    site:archive.is and perhaps the site has been archived.

  • CachedView.com, Google Cached Pages for any web site. It is the
    ultimate internet cache.

  • Gruber, slideshare downloader,
    http://grub.cballenar.me/

  • Historic Breach Database List,
    https://publicdbhost.dmca.gripe/random/

  • Wayback Machine, which archives websites
    archive.org/web/web.php 

  • Download an entire website from the Wayback Machine,
    github.com/hartator/wayback-machine-downloader

Miscellaneous

  • Check for collaborative fact-checking, checkmedia.org 

  • Link to user
    guide

  • Bellingcat’s Check team

  • Document Redaction, useful for removing potentially harmful content
    in Pdfs before viewing, like traceback,
    github.com/firstlookmedia/pdf-redact-tools

  • Geo IP Tool, check your own IP, handy to check if your VPN is
    working,
    geoiptool.com

  • Google Search Operators, such as searching for a specific filetype
    (e.g. PDF) or on a specific website,
    googleguide.com/advanced_operators_ 

  • Insecam, network live IP video cameras directory,
    insecam.org/en/ 

  • Knight Lab, make an interactive timeline of events,
    timeline.knightlab.com 

  • LittleSis, a database of who-knows-who at the heights of business
    and government,
    littlesis.org

  • Lumen, the Lumen database collects and analyses legal complaints and
    requests for removal of online materials, helping Internet users to
    know their rights and understand the law. These data enables us to
    study the prevalence of legal threats and let Internet users see the
    source of content removals,
    lumendatabase.org 

  • Maltego tool,
    paterva.com/web7

  • Montage for collaborative working,
    montage.storyful.com

  • OpenCorporates, database of companies in the world,         

  • People tracer,
    peopletracer.co.uk 

  • Research sidekick Hunch.ly,
    hunch.ly

  • Visual Investigative Scenarios (VIS), a
    tool, 

  • Wolfram Alpha, for any question and a computer-generated answer,
    wolframalpha.com 

  • Zoopla, Search for property with the UK’s leading resource. Browse
    houses and flats for sale and to rent, and find estate agents in any
    area,
    zoopla.co.uk 

Guides and handbooks

Weapons

  • Open guide called “Itrace” by Conflict Armament Research, lots of
    information on different kinds of munitions and weapons presented
    graphically on a map format,
    itrace.conflictarm.com 

Data visualization

  • DataBasic.io, web tools for beginners that introduce concepts of
    working with data,
     databasic.io/en 
  • DataWrapper, easy to use chart and mapping tool,
    datawrapper.de 
  • Google Fusion Tables, fusiontables.google.com  
  • Maptia,
    maptia.com 
  • Visual investigative
    scenarios, vis.occrp.org 
  • RAWGraphs, free webtool to quickly visualize your data,
    app.rawgraphs.io

Online security and privacy

Search engines which protect privacy

  • DuckDuckGo, Internet search engine, protecting privacy,
    duckduckgo.com
  • Qwant, Internet search engine, protecting privacy,
    qwant.com 

List of sources per country

Iraq

Russia

OSINT guides

Syria

  • Opposition media, see this excellent list compiled by Noor Nahas of
    multimedia sources from Syrian opposition groups,
    reddit.com
  • Provinces of the so-called Islamic State,
    umap.openstreetmap.fr

Go to GitHub File