DFTimewolf Logo

DFTimewolf

0
Free
Visit Website

DFTimewolf is a framework for orchestrating forensic collection, processing, and data export. It consists of collectors, processors, and exporters (modules) that pass data on to one another. The orchestration of modules is defined in predefined 'recipes'. Documentation is hosted on GitHub pages.

FEATURES

ALTERNATIVES

A high-performance digital forensics exploitation tool for extracting structured information from various inputs without parsing file system structures.

TestDisk is a free data recovery software that can recover lost partitions and undelete files from various file systems.

Generate comprehensive reports about Windows systems with detailed system, security, networking, and USB information.

Toolkit for post-mortem analysis of Docker runtime environments using forensic HDD copies.

A portable volatile memory acquisition tool for Linux.

A library and set of tools for accessing and analyzing storage media devices and partitions for forensic analysis and investigation.

Online platform for image steganography analysis

View physical memory as files in a virtual file system for easy memory analysis and artifact access.