The Sleuth Kit (TSK) & Autopsy Logo

The Sleuth Kit (TSK) & Autopsy

0
Free
Visit Website

The Sleuth Kit is a collection of command line tools and a C library that allows you to analyze disk images and recover files from them. Autopsy is an easy to use, GUI-based program that allows you to efficiently analyze hard drives and smart phones, with a plug-in architecture for add-on modules in Java or Python.

FEATURES

ALTERNATIVES

A command-line tool for creating hex dumps, converting between binary and human-readable representations, and patching binary files.

Python forensic tool for extracting and analyzing information from Firefox, Iceweasel, and Seamonkey browsers.

DMG2IMG is a tool for converting Apple compressed dmg archives to standard image disk files with support for zlib, bzip2, and LZFSE compression.

Windows anti-forensics USB monitoring tool with the ability to shutdown the computer upon detecting the unplugging of a specified USB device.

A cross-platform registry hive editor for forensic analysis with advanced features like hex viewer and reporting engine.

GUI-based memory forensic capture tool for cyber forensics and cyber crime investigation.

Python script to parse macOS MRU plist files into human-friendly format

A shell script for basic forensic collection of various artefacts from UNIX systems.

PINNED