dcfldd Logo

dcfldd

0
Free
Updated 11 March 2025
Visit Website

dcfldd is a modified version of GNU dd with added features such as hashing, fast disk wiping, and status output. Originally created by Nicholas Harbour from the DoD Computer Forensics Laboratory (DCFL), it is now maintained by him independently. The latest version can be found on GitHub at https://github.com/adulau/dcfldd/, which includes Debian patches and additional patches from Alexandre Dulaunoy.

FEATURES

SIMILAR TOOLS

A command-line utility and Python package for mounting and unmounting various disk image formats with support for different volume systems and filesystems.

A forensic analysis tool that extracts and parses logs, notifications, and system information from iOS/iPadOS devices and backups.

A forensic research tool for gathering forensic traces on Android and iOS devices, supporting the use of public indicators of compromise.

Malscan is a tool to scan process memory for YARA matches and execute Python scripts.

wxHexEditor is a free hex editor / disk editor with various data manipulation operations and visualization functionalities.

A simple Golang application for storing NIST National Software Reference Library Reference Data Set (NSRL RDS) with md5 and sha1 hash lookup searches.

Recreates the File/Directory tree structure from an extracted $MFT file with detailed record mapping and analysis capabilities.

Rekall is a discontinued project that aimed to improve memory analysis methodology but faced challenges due to the nature of in-memory structure and increasing security measures.

A cross-platform registry hive editor for forensic analysis with advanced features like hex viewer and reporting engine.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

VAT: NL005301434B12

Copyright © 2025 - All rights reserved