Skip to content

Rizzy1857/ArteFact

The Modular Digital Forensics Toolkit

Build Status Python Version License Test Coverage Documentation


ARTEFACT

A professional-grade digital forensics toolkit designed for efficiency, modularity, and comprehensive analysis capabilities. Built with modern Python practices and extensive testing.

Quick Start

📚 Documentation Hub

Core Features

🔍 Analysis Capabilities

  • Advanced memory dump analysis (strings, IOCs, processes)
  • File/directory hashing (MD5, SHA1, SHA256)
  • File carving with ML support (PE, ELF, JPG, PNG, PDF)
  • Deep metadata extraction with exiftool integration
  • Comprehensive timeline generation
  • Live system analysis capabilities
  • Disk image mounting
  • LiveOps (live system collection)

Example CLI Usage

artefact hash test/text.txt --algorithm md5
artefact carve -i disk.img -o output --types jpg
artefact meta -f sample.jpg --deep
artefact timeline "C:\Users\HRISHI\Documents\*" --format markdown
artefact mount -i disk.img --list
artefact memory -i memdump.raw --strings
artefact liveops --collect processes network

License

MIT License. See LICENSE.

Contributing

See CONTRIBUTING.md


For full details, see the docs above.

Packages

 
 
 

Contributors

Languages