If you find DME Resources helpful, consider buying me a cup of coffee by making a small donation today.Support my Site

Digital Evidence Tools

Digital Evidence Tools

Software and solutions related to all things digital evidence, from memory acquisition to mobile and IoT devices.

Free & Open Source Solutions (FOSS), DEMO versions & Trialware.

It is important to note that tool validation is the end user’s responsibility. For more information on validation testing please see the SWGDE Minimum Requirements for Testing Tools used in Digital and Multimedia Forensics, the most current version of which is available via the SWGDE Current Documents page. You may also be interested in the NIST Computer Forensics Tool Testing Program.

Display:

Belkasoft Remote Acquisition (Free Trial)
 4 KB
 10-28-2023
Average Rating:

"Belkasoft Remote Acquisition (Belkasoft R) is a new digital forensic and incident response tool developed specifically for remote extraction of hard and removable drives, RAM, connected mobile devices, and even specific types of data. Belkasoft R will be useful in cases when an incident response analyst or a digital forensic investigator needs to gather evidence quickly and the devices in question are situated in geographically distributed locations." 

The Sleuth Kit® & Autopsy® FEATURED
 10-31-2023
Average Rating:

"Autopsy® is an easy to use, GUI-based program that allows you to efficiently analyze hard drives and smart phones. The Sleuth Kit® is a collection of command line tools and a C library that allows you to analyze disk images and recover files from them." - http://www.sleuthkit.org/

QuickHash-GUI
 4 KB
 10-28-2023
Average Rating:

"QuickHash-GUI is an open-source graphical interface data hashing tool for Linux, Windows, and Apple Mac OSX. Originally designed for Linux, but also available for Windows and Apple Mac OSX." - https://www.quickhash-gui.org/

John the Ripper - Password Cracker
 4 KB
 10-31-2023
Average Rating:

"John the Ripper is an Open Source password security auditing and password recovery tool available for many operating systems. John the Ripper jumbo supports hundreds of hash and cipher types, including for: user passwords of Unix flavors (Linux, *BSD, Solaris, AIX, QNX, etc.), macOS, Windows, "web apps" (e.g., WordPress), groupware (e.g., Notes/Domino), and database servers (SQL, LDAP, etc.); network traffic captures (Windows network authentication, WiFi WPA-PSK, etc.); encrypted private keys (SSH, GnuPG, cryptocurrency wallets, etc.), filesystems and disks (macOS .dmg files and "sparse bundles", Windows BitLocker, etc.), archives (ZIP, RAR, 7z), and document files (PDF, Microsoft Office's, etc.) These are just some of the examples - there are many more"

Thumbscrew - a poor man's USB Write Blocker
 233.93 KB
 10-31-2023
Average Rating:

"Thumbscrew is my attempt at a poor man's USB write blocker. When used it allows you to quickly enable or disable writing to all USB mass storage devices on your Windows system. In other words, you can use it to make a USB flash drive, hard drive or IDE / SATA drive in an enclosure read only. However, I make no guarantees as to its forensic validity. Still, if your poor and you want to play around with making forensic images of thumb drives and other USB mass storage devices it may come in handy." - Thumbscrew: Software USB Write Blocker (irongeek.com)

Smart Search

Download Categories