The Sleuth Kit (TSK) & Autopsy Logo

The Sleuth Kit (TSK) & Autopsy

0
Free
Visit Website

The Sleuth Kit is a collection of command line tools and a C library that allows you to analyze disk images and recover files from them. Autopsy is an easy to use, GUI-based program that allows you to efficiently analyze hard drives and smart phones, with a plug-in architecture for add-on modules in Java or Python.

FEATURES

ALTERNATIVES

AMExtractor is an Android Memory Extractor tool.

A high-performance digital forensics exploitation tool for extracting structured information from various inputs without parsing file system structures.

A digital forensics tool that provides read-only access to file-system objects from various storage media types and file formats.

Orochi is a collaborative forensic memory dump analysis framework.

PowerForensics is a PowerShell digital forensics framework for hard drive forensic analysis.

A utility for recovering deleted files from ext3 or ext4 partitions.

A collection of PowerShell modules for artifact gathering and reconnaissance of Windows-based endpoints.

Windows anti-forensics USB monitoring tool with the ability to shutdown the computer upon detecting the unplugging of a specified USB device.

PINNED