What problem does it solve?
Digital forensics often requires juggling scattered tools and manual workflows. This skill consolidates file carving, steganography detection, PCAP analysis, entropy scanning, and memory forensics into a cohesive offline toolkit to accelerate investigations in CTF challenges and real-world incidents.
Core Features & Use Cases
- File Analysis & Carving: Inspect files for signatures, carve embedded content, and recover artifacts.
- Steganography Detection: Detect hidden data in images and other media, and recover embedded payloads.
- Network Forensics: Analyze PCAPs, extract HTTP/DNS data, and reconstruct streams.
- Entropy & Metadata: Assess data entropy and metadata to identify encrypted or compressed payloads.
- Use Case: Quickly triage a suspicious ZIP or memory dump to surface flags or evidence for reporting.
Quick Start
Load this skill and run the included forensic workflows to triage a suspicious file, PCAP, or memory dump offline.