Disk Arbitrator Logo

Disk Arbitrator

0
Free
Visit Website

Disk Arbitrator is a Mac OS X forensic utility that provides a user interface to the Disk Arbitration framework, ensuring correct forensic procedures are followed during disk imaging. When enabled, it blocks the mounting of file systems to prevent read-write access, complementing write-blockers with additional features.

FEATURES

ALTERNATIVES

A forensic research tool for gathering forensic traces on Android and iOS devices, supporting the use of public indicators of compromise.

DFIR ORC Documentation provides detailed instructions for setting up the build environment and deploying the tool.

A digital investigation platform for parsing, searching, and visualizing evidences with advanced analytics capabilities.

Easy-to-use live forensics toolbox for Linux endpoints with various capabilities such as process inspection, memory analysis, and YARA scanning.

A tool that uses graph theory to reveal hidden relationships and attack paths in an Active Directory environment.

libevt is a library to access and parse Windows Event Log (EVT) files.

MFT and USN parser for direct extraction in filesystem timeline format with YARA rule support.

A library to access and parse Windows Shortcut File (LNK) format.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2025 - All rights reserved