Forensics
ExifTool
Read/write metadata in files (images, docs, etc.).
Authorized testing only. Practice on systems you own, isolated labs, or targets with written permission. Unauthorized access is illegal.
When
OSINT on documents/images or scrubbing metadata.
How
exiftool file; look for GPS, authors, software versions.
Why
Metadata leaks are common and easy wins.
Commands & usage
exiftool image.jpg
exiftool -all= image.jpg
Commands are educational examples. Adapt hosts, paths, and rates to your authorized scope.
Tags
Related in Forensics
Volatility 3
Memory forensics framework for RAM dumps.
Autopsy
GUI digital forensics platform on The Sleuth Kit.
The Sleuth Kit
CLI tools for disk image forensic analysis.
Wireshark / tshark
World-class packet capture and protocol analysis tool.
tcpdump
CLI packet capture utility.
steghide / zsteg / steghide tools
Steganography detection and extraction tools for CTFs and investigations.