SPECTR3 Logo

SPECTR3

0
Free
Visit Website

Acquire, triage, and investigate remote evidence via portable iSCSI readonly access. The project is based on the work of TalAloni and Fujita, aiming to provide a command line, open-source tool for forensic acquisition and analysis scenarios.

FEATURES

ALTERNATIVES

CyLR is a Live Response Collection tool for quickly and securely collecting forensic artifacts from hosts with NTFS file systems.

ID-spoofing NFS client

DMG2IMG is a tool for converting Apple compressed dmg archives to standard image disk files with support for zlib, bzip2, and LZFSE compression.

A library to access and parse Windows NT Registry File (REGF) format.

Open source tool for generating YARA rules about installed software from a running OS.

Recreates the File/Directory tree structure from an extracted $MFT file with detailed record mapping and analysis capabilities.

Web interface for the Volatility Memory Analysis framework with advanced features.

A toolkit for forensic analysis of network appliances with YARA decoding options and frame extraction capabilities.