timeliner Logo

timeliner

0
Free
Visit Website

A rewrite of mactime, timeliner uses a real expression engine to parse and apply filtering logic, allowing complex queries like filtering events based on time, path, weekday, and date using a BPF syntax. Although still in alpha stage, its killer feature is the advanced expression engine.

FEATURES

ALTERNATIVES

A tool for parsing and extracting information from the Master File Table of NTFS file systems.

Modern digital forensics and incident response platform with comprehensive tools.

A tool for analyzing pentest screenshots using a convolutional neural network

Toolkit for performing acquisitions on iOS devices with logical and filesystem acquisition support.

A command-line utility for extracting human-readable text from binary files.

A tool for discovering, analyzing, and remedying sensitive data

A Windows Registry hive extraction library that reads and writes Windows Registry 'hive' binary files.

Python forensic tool for extracting and analyzing information from Firefox, Iceweasel, and Seamonkey browsers.

PINNED