A Windows tool for extracting metadata and hidden information from documents found on web pages and local files.
FOCA (Fingerprinting Organizations with Collected Archives) is a specialized security tool designed to discover metadata and hidden information within documents. It scans documents from web pages or local files, downloading and analyzing them to reveal potentially sensitive data that could expose organizational information or security weaknesses. It primarily aids in security assessments and forensic investigations by fingerprinting documents to identify information leaks.
Security professionals, penetration testers, and forensic investigators conducting security assessments to uncover metadata leaks and hidden information in organizational documents. It is also suitable for IT auditors and researchers focused on document security and information disclosure vulnerabilities.
Developers choose FOCA for its comprehensive multi-format document analysis, supporting Microsoft Office, Open Office, PDF, Adobe InDesign, SVG, and others, combined with integrated search engine capabilities (Google, Bing, DuckDuckGo) for broad document discovery. Its unique selling point is the thorough fingerprinting of documents to aid in identifying security vulnerabilities through metadata extraction from both web and local sources.
Tool to find metadata and hidden information in the documents.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.
Supports analysis of Microsoft Office, Open Office, PDF, Adobe InDesign, SVG, and more, as stated in the README, making it versatile for handling various document types in security assessments.
Uses Google, Bing, and DuckDuckGo to find documents across the web, aggregating results for comprehensive coverage, which enhances discovery of publicly available files for fingerprinting.
Allows adding local files for EXIF extraction from graphics and conducts analysis on URLs before downloading, providing flexibility in source handling for forensic investigations.
Built specifically for fingerprinting organizations to uncover metadata leaks, aiding in security assessments and forensic investigations with a targeted approach.
Requires Microsoft Windows 64-bit and .NET Framework 4.7.1, as per the requisites, limiting its use to Windows environments and excluding cross-platform teams.
Needs an instance of SQL Server 2014 or greater, adding complexity to setup and maintenance, which can be a barrier for users without existing SQL Server infrastructure.
Primarily a GUI-based tool with no mentioned command-line interface or API in the README, making it less suitable for automated workflows or integration into scripts.