DFTimewolf Logo

DFTimewolf

0
Free
Updated 11 March 2025
Visit Website

DFTimewolf is a framework for orchestrating forensic collection, processing, and data export. It consists of collectors, processors, and exporters (modules) that pass data on to one another. The orchestration of modules is defined in predefined 'recipes'. Documentation is hosted on GitHub pages.

FEATURES

SIMILAR TOOLS

PowerForensics is a PowerShell digital forensics framework for hard drive forensic analysis.

Automated collection tool for incident response triage in Windows systems.

A tool for fixing acquired .evt Windows Event Log files in digital forensics.

Tool used for dumping memory from Android devices with root access requirement and forensic soundness considerations.

Tool for parsing Android logs events and protobuf data

Open Backup Extractor is an open source program for extracting data from iPhone and iPad backups.

LiME is a Linux Memory Extractor tool for acquiring volatile memory from Linux and Linux-based devices, including Android, with features like full memory captures and minimal process footprint.

A library to access the Windows New Technology File System (NTFS) format with read-only support for NTFS versions 3.0 and 3.1.

Malscan is a tool to scan process memory for YARA matches and execute Python scripts.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

VAT: NL005301434B12

Copyright © 2025 - All rights reserved