Skadi Logo

Skadi

0
Free
Visit Website

Skadi is a free, open source collection of tools that enables the collection, processing, and advanced analysis of forensic artifacts and images. It works on MacOS, Windows, and Linux machines, scaling effectively on various platforms including laptops, desktops, servers, and the cloud. Skadi can be installed on top of hardened/gold disk images. To get started, download the latest release available in OVA, Vagrant, and Signed Installer formats. Installation instructions are provided for Docker, Vagrant, OVA, and Signed Installer. Skadi Portal provides easy access to the tools with default credentials: Username: skadi, Password: skadi.

FEATURES

ALTERNATIVES

Comprehensive digital forensics and incident response platform for law enforcement, corporate, and academic institutions.

A library for working with Windows NT data types, providing access and manipulation functions.

A library to access the Windows New Technology File System (NTFS) format with read-only support for NTFS versions 3.0 and 3.1.

A framework for orchestrating forensic collection, processing, and data export.

Custom built application for asynchronous forensic data presentation on an Elasticsearch backend, with upcoming features like Docker-based installation and new UI rewrite in React.

A command-line tool for searching and extracting strings from files with various options like ASCII and Unicode string search.

Scripts to automate the process of enumerating a Linux system through a Local File Inclusion (LFI) vulnerability.

A python module for orchestrating content acquisitions and analysis via Amazon SSM.