libfsntfs Logo

libfsntfs

0
Free
Updated 11 March 2025
Visit Website

libfsntfs is a library to access the Windows New Technology File System (NTFS) format. It supports read-only access to NTFS versions 3.0 and 3.1, with features like LZNT1 compression, Windows Overlay Filter (WOF) compressed data, and case sensitive directories. The library is licensed under LGPLv3+ and is currently in an experimental status. For more information, see the project documentation and building instructions on the GitHub wiki.

FEATURES

SIMILAR TOOLS

MFT and USN parser for direct extraction in filesystem timeline format with YARA rule support.

View physical memory as files in a virtual file system for easy memory analysis and artifact access.

A modified version of GNU dd with added features like hashing and fast disk wiping.

Toolkit for performing acquisitions on iOS devices with logical and filesystem acquisition support.

A network forensics toolkit that transforms network traffic data into graph-based representations for interactive analysis and visualization through a web interface.

Forensics tool for exploring offline Docker filesystems.

Yara pattern matching tool for forensic investigations with predefined rules for magic headers in files and raw images.

A collection of Mac OS X and iOS forensics resources with a focus on artifact collection and collaboration.

Collects and organizes Linux OS data for detailed analysis and incident response.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

VAT: NL005301434B12

Copyright © 2025 - All rights reserved