libfsntfs is a library to access the Windows New Technology File System (NTFS) format. It supports read-only access to NTFS versions 3.0 and 3.1, with features like LZNT1 compression, Windows Overlay Filter (WOF) compressed data, and case sensitive directories. The library is licensed under LGPLv3+ and is currently in an experimental status. For more information, see the project documentation and building instructions on the GitHub wiki.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
MFT and USN parser for direct extraction in filesystem timeline format with YARA rule support.
View physical memory as files in a virtual file system for easy memory analysis and artifact access.
A modified version of GNU dd with added features like hashing and fast disk wiping.
Toolkit for performing acquisitions on iOS devices with logical and filesystem acquisition support.
A network forensics toolkit that transforms network traffic data into graph-based representations for interactive analysis and visualization through a web interface.
Yara pattern matching tool for forensic investigations with predefined rules for magic headers in files and raw images.
A collection of Mac OS X and iOS forensics resources with a focus on artifact collection and collaboration.
Collects and organizes Linux OS data for detailed analysis and incident response.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.