
Top picks: DMG2IMG, wxHexEditor, Bmaptool — plus 45 more compared.
Security OperationsAPFS FUSE Driver for Linux is a free Digital Forensics and Incident Response tool. Security professionals most commonly compare it with DMG2IMG, wxHexEditor, Bmaptool, Exterro FTK Imager Pro, and Magnet Forensics. All 48 alternatives are matched by shared capabilities, tags, and NIST CSF 2.0 coverage.
A closer look at the 8 most relevant alternatives and competitors to APFS FUSE Driver for Linux, including their key features and shared capabilities.
DMG2IMG converts Apple compressed DMG archives to standard HFS+ image files supporting zlib, bzip2, and LZFSE compression formats.
Shares 4 capabilities with APFS FUSE Driver for Linux: Mac Os, IOS, Open Source, Disk Image
wxHexEditor is a free cross-platform hex editor and disk editor for editing binary files, disk devices, and logical drives with data manipulation and checksum calculation features.
Shares 3 capabilities with APFS FUSE Driver for Linux: Linux, Mac Os, Open Source
A discontinued disk imaging utility originally developed by Intel that used block map files for efficient disk image copying operations.
Shares 3 capabilities with APFS FUSE Driver for Linux: Linux, Open Source, Disk Image
Forensic imaging tool for disk acquisition, iOS collection, and encryption
Digital forensics platform for evidence acquisition, analysis, and DFIR.
Automated Mac Forensic Triage Collector
A command-line tool for extracting data from iOS mobile device backups created by iTunes on macOS systems.
A digital forensics tool that extracts and exports location database contents from iOS and macOS devices in KML or CSV formats.
DMG2IMG converts Apple compressed DMG archives to standard HFS+ image files supporting zlib, bzip2, and LZFSE compression formats.
wxHexEditor is a free cross-platform hex editor and disk editor for editing binary files, disk devices, and logical drives with data manipulation and checksum calculation features.
A discontinued disk imaging utility originally developed by Intel that used block map files for efficient disk image copying operations.
Forensic imaging tool for disk acquisition, iOS collection, and encryption
Digital forensics platform for evidence acquisition, analysis, and DFIR.
A command-line tool for extracting data from iOS mobile device backups created by iTunes on macOS systems.
A digital forensics tool that extracts and exports location database contents from iOS and macOS devices in KML or CSV formats.
CyLR is a Live Response Collection tool for quickly and securely collecting forensic artifacts from hosts with NTFS file systems.
A collection of Mac OS X and iOS forensics resources with a focus on artifact collection and collaboration.
Open Backup Extractor is an open source program for extracting data from iPhone and iPad backups.
Mobile forensic bundle for physical, logical & OTA acquisition of iOS/Android/cloud.
FIM and config change monitoring tool with baseline deviation detection.
Digital forensics tools for detecting CSAM on devices and online platforms.
An open source .NET deobfuscator and unpacker that restores packed and obfuscated assemblies by reversing various obfuscation techniques.
A utility package that monitors hard drive health through SMART technology to detect and prevent disk failures before data loss occurs.
OCyara performs OCR on images and PDF files to extract text content and scan it against Yara rules for malware detection.
A forensic toolkit for analyzing Android and iOS devices to detect potential spyware infections and security compromises using indicators of compromise.
A forensic analysis tool that extracts and parses logs, notifications, and system information from iOS/iPadOS devices and backups.
An open-source incident response case management tool
Fast disassembler producing reassemblable assembly code using Datalog
HexPrism is a fast, privacy-first hex editor built for CTFs and digital forensics.
libevt is a library to access and parse Windows Event Log (EVT) files.
A library for read-only access to QEMU Copy-On-Write (QCOW) image files, supporting multiple versions and compression formats for digital forensics analysis.
Unfurl is a URL analysis tool that extracts and visualizes data from URLs, breaking them down into components and presenting the information visually.
A library to access and manipulate RAW image files.
Free software for extracting Microsoft cabinet files, supporting all features and formats of Microsoft cabinet files and Windows CE installation files.
A library for accessing and parsing Windows NT Registry File (REGF) format files, designed for digital forensics and registry analysis applications.
A library to access FileVault Drive Encryption (FVDE) encrypted volumes on Mac OS X systems.
A library for accessing and parsing OLE 2 Compound File (OLECF) format files, including Microsoft Office documents and thumbs.db files.
A library and tools for accessing and analyzing Linux Logical Volume Manager (LVM) volume system format.
A library and tools to access and analyze APFS file systems
edb is a powerful debugger for Linux binaries, enhancing reverse engineering efforts with a user-friendly interface and extensible plugins.
LiME is a Linux Memory Extractor tool for acquiring volatile memory from Linux and Linux-based devices, including Android, with features like full memory captures and minimal process footprint.
An open source tool that generates YARA rules from installed software on running operating systems for efficient software identification in digital forensic investigations.
iOSForensic is a Python tool for forensic analysis on iOS devices, extracting files, logs, SQLite3 databases, and .plist files into XML.
A Yara ruleset designed to detect PHP shells and other webserver malware for malware analysis and threat detection.
A tool for creating compact Linux memory dumps compatible with popular debugging tools.
Ghidra is an NSA-developed software reverse engineering framework that provides disassembly, decompilation, and analysis tools for examining compiled code across multiple platforms and processor architectures.
A deprecated digital forensics tool by Netflix that helped investigators scope compromises across AWS cloud instances by identifying behavioral differences and outliers during security incidents.
A Cross-Platform Forensic Framework for Google Chrome that allows investigation of history, downloads, bookmarks, cookies, and provides a full report.
Browse and analyze iPhone/iPad backups with detailed file properties and various viewers.
A script for extracting common Windows artifacts from source images and VSCs with detailed dependencies and usage instructions.
Procmon for Linux is a reimagining of the classic Procmon tool from Windows, allowing Linux developers to trace syscall activity efficiently.
Sysmon for Linux is a tool that monitors and logs system activity with advanced filtering to identify malicious activity.
An OCaml Ctypes wrapper for the YARA matching engine that enables malware identification capabilities in OCaml applications.
A Mac OS X forensic utility for ensuring correct forensic procedures during disk imaging.
BinaryAlert is an open-source serverless AWS pipeline that automatically scans files uploaded to S3 buckets with YARA rules and generates immediate alerts when malware is detected.
Common questions security professionals ask when evaluating alternatives and competitors to APFS FUSE Driver for Linux.
The most popular alternatives to APFS FUSE Driver for Linux include DMG2IMG, wxHexEditor, Bmaptool, Exterro FTK Imager Pro, and Magnet Forensics. These Digital Forensics and Incident Response tools offer similar capabilities and are frequently compared by security professionals evaluating their options.