pentest-ctf-forensics
SKILL.md
Pentest CTF Forensics
Purpose
Extract hidden information from various artifacts: memory dumps, network captures (PCAP), images, and disk images.
Core Workflow
- File Analysis: Identify file type, metadata, and embedded strings using
file,exiftool, andstrings. - Steganography: Detect and extract hidden data in images/audio using
steghideandstegsolve. - Network Forensics: Analyze PCAP files for suspicious traffic and flag transmission using
wiresharkortshark. - Memory Forensics: Analyze memory dumps for processes, connections, and injected code using
volatility. - Data Extraction: Carve files and recover deleted data using
foremostandbinwalk.
References
references/tools.mdreferences/workflows.md
Weekly Installs
24
Repository
jd-opensource/joysafeterGitHub Stars
182
First Seen
Feb 18, 2026
Security Audits
Installed on
github-copilot24
codex24
kimi-cli24
gemini-cli24
amp24
cursor24