Aid4Mail
Aid4Mail is a leading email processing tool from Switzerland. It comes in three editions:
1. Use Converter to collect and convert emails accurately, fast, and reliably. It supports all popular mail services (e.g. Office 365, Gmail, Yahoo! Mail) and mailbox file formats (e.g. PST, OST, OLM, mbox). It’s also a popular solution for preparing mail ingestion into archival, eDiscovery and forensics platforms.
2. Investigator adds powerful search queries based on Gmail and Microsoft 365 syntax, native pre-acquisition filters and Python scripting. Use its forensic features to recover deleted and hidden email, and process corrupt or unknown mail formats.
3. Enterprise adds support for Google Vault, Mimecast, and Proofpoint exports. Use it to migrate your company mail to live accounts (IMAP, Microsoft 365, Gmail). You can integrate its CLI seamlessly with your own tools. Enterprise offers flexible licensing options including installation on a server or on a shareable flash drive.
Aid4Mail is used by Fortune 500 companies, government agencies and legal professionals around the world.
Learn more
FTK Forensic Toolkit
FTK® is a purpose-built solution that works with mobile devices and e-discovery technology. It allows you to quickly find relevant evidence, perform faster searches, and dramatically improve your analysis speed. FTK is powerful and proven. FTK indexes and processes data immediately, eliminating the need to wait for searches to complete. FTK can help you get there faster and better than any other data source, no matter how many you have or how much data you need to cull. FTK uses distributed processing and is the only forensics solution to fully leverage multi-thread/multi-core computers. FTK makes use of all of its hardware resources. This allows investigators to find relevant evidence more quickly than other forensics tools. Indexing is done upfront, so searching and filtering are faster than any other solution.
Learn more
Sniffnet
Sniffnet, a network monitoring software, is designed to help users keep track of Internet traffic. Sniffnet offers comprehensive coverage, whether it's gathering statistics or inspecting network activities in depth. It focuses on user experience and ease of use, compared to other cumbersome analyzers. Sniffnet, which is completely free and open-source, is licensed under MIT or Apache 2.0, with its full source code being available on GitHub. It is built entirely in Rust and uses this modern programming language for efficient and reliable software that emphasizes performance and safety. The key features include selecting the network adapter for inspection, applying filters to observed data, viewing statistics and real-time charts, exporting comprehensive capture files as PCAP, identifying more than 6,000 upper layer services, protocols and trojans and worms.
Learn more
NetworkMiner
NetworkMiner, an open-source tool for network forensics, extracts artifacts like files, images, emails and passwords, from captured network traffic stored in PCAP files. It can also capture real-time network traffic by sniffing the network interface. The analyzed network traffic contains detailed information about each IP. This can be used to discover passive assets and get a better overview of communicating devices. NetworkMiner was designed to run primarily on Windows, but it can also be used with Linux. Since its 2007 release, it has become a favorite tool among incident response teams, law enforcement agencies and companies and organizations around the world. Audio extraction and playback from VoIP calls. Lookups for OSINT of file hashes and IP addresses. Support for command line scripting and a configurable file output directory.
Learn more