libfsntfs is a library to access the Windows New Technology File System (NTFS) format. It supports read-only access to NTFS versions 3.0 and 3.1, with features like LZNT1 compression, Windows Overlay Filter (WOF) compressed data, and case sensitive directories. The library is licensed under LGPLv3+ and is currently in an experimental status. For more information, see the project documentation and building instructions on the GitHub wiki.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A library and set of tools for accessing and analyzing storage media devices and partitions for forensic analysis and investigation.
A library to access FileVault Drive Encryption (FVDE) encrypted volumes on Mac OS X systems.
A library to access and parse Windows XML Event Log (EVTX) format, useful for digital forensics and incident response.
Free software for extracting Microsoft cabinet files, supporting all features and formats of Microsoft cabinet files and Windows CE installation files.
A library for accessing and parsing Windows NT Registry File (REGF) format files, designed for digital forensics and registry analysis applications.
Zenduty's platform provides real-time operational health monitoring and incident response orchestration to improve incident response times and build a solid on-call culture.
A library for read-only access to QEMU Copy-On-Write (QCOW) image files, supporting multiple versions and compression formats for digital forensics analysis.
A library for accessing and parsing Extensible Storage Engine (ESE) Database Files used by Microsoft applications like Windows Search, Exchange, and Active Directory for forensic analysis purposes.