hackref/
homecategoriestools•webcryptorevpwnforensicsosint
githubtools
navigation[esc to close]
home›categoriestools
categories
webcryptorevpwnforensicsosint
tools directorygithub →

// index directory

  • Web Exploitation
    • HTTP Basics for CTF
    • SQL Injection
    • Cross-Site Scripting (XSS)
    • Cross-Site Request Forgery (CSRF)
    • Server-Side Request Forgery (SSRF)
    • OS Command Injection
    • File Inclusion & Path Traversal
    • JWT Attacks & Bypass
    • Server-Side Template Injection (SSTI)
  • Cryptography
    • Classical Ciphers
    • XOR Encoding
    • RSA Basics
    • CBC Padding Oracle Attacks
    • Diffie-Hellman Key Exchange Attacks
    • Hash Attacks & Length Extension
    • Elliptic Curve Cryptography Flaws
  • Reverse Engineering
    • Reverse Engineering Basics
    • Ghidra Workflow for CTF
    • Dynamic Analysis with GDB
    • Anti-Debugging & Evasion Techniques
    • Python Binary & Bytecode Decompilation
    • Android APK Reverse Engineering
  • Binary Exploitation
    • Buffer Overflow Basics
    • Format String Bugs
    • Return-Oriented Programming
    • Integer Overflows & Underflows
    • Shellcode Writing & Injection
    • Heap Exploitation Fundamentals
  • Forensics
    • File Analysis Fundamentals
    • PCAP Analysis
    • Memory Forensics with Volatility
    • Disk Image & Filesystem Forensics
    • System & Web Log Analysis
    • Windows Registry Forensics
  • OSINT
    • OSINT Basics
    • Geolocation Challenges
    • Username & Social Media Footprinting
    • Image & Document Metadata Analysis
    • Domain & DNS Reconnaissance
    • Advanced Geolocation & Satellite Analysis
  • Steganography
    • Image Steganography
    • Audio Steganography
    • Deep LSB Steganography & Bitplane Extraction
    • Video & PDF Document Steganography
    • Polyglot Files & Zip Appending
    • DCT & Frequency Domain Steganography
  • Networking
    • Protocol Analysis
    • Network Reconnaissance
    • DNS Tunneling & Covert Exfiltration
    • Wireless Reconnaissance & WPA Cracking
    • ICMP Covert Channels & Protocol Misuse
    • TLS Inspection & SSL Session Decryption
  • Miscellaneous
    • Encoding and Decoding
    • Scripting for CTF
    • Python Jail Escapes & Sandbox Bypasses
    • Esoteric Programming Languages (Esolangs)
    • Damaged QR Code & Barcode Reconstruction
    • Reversing Custom CTF Virtual Machines
home/categories/forensics
cat/forensicsexplore forensics tools →

Forensics

// 6 published technical guides

Forensics challenges hand you an artifact — a pcap, a disk image, a memory dump — and ask you to recover what happened or what was hidden inside.

› reference guides

  • 01

    File Analysis Fundamentals

    Identify mystery files, find hidden data in metadata, and extract embedded archives from any forensics challenge.

    beginner
  • 02

    PCAP Analysis

    Read network captures in Wireshark, follow streams, and extract files and credentials from captured traffic.

    beginner
  • 03

    Memory Forensics with Volatility

    Extract processes, network connections, files, and credentials from a raw memory dump using Volatility.

    intermediate
  • 04

    Disk Image & Filesystem Forensics

    Inspect disk images, parse Master File Tables (MFT), mount raw partitions, and carve deleted files using Sleuth Kit and Autopsy.

    intermediate
  • 05

    System & Web Log Analysis

    Parse web server logs, Linux syslogs, and Windows Event Logs to reconstruct attack timelines and detect compromise.

    beginner
  • 06

    Windows Registry Forensics

    Extract execution history, user activity, persistence mechanisms, and connected USB artifacts from Windows Registry hives.

    intermediate
Binary Exploitationcategories indexOSINT
hackref/CTF reference manual
homecategoriestoolsgithub
domains:webcryptorevpwnforensicsosintstegonetworkingmisc
© 2026 hackref•CTF reference manual
crafted by Md. Minaruzzaman Shovon