Timesketch Logo

Timesketch

0
Free
Visit Website

Timesketch is an open-source tool for collaborative forensic timeline analysis. Using sketches you and your collaborators can easily organize your timelines and analyze them all at the same time. Add meaning to your raw data with rich annotations, comments, tags and stars. Using Timesketch: * Installation * Adding timelines * Upload data Community: * Community guide Contributing: * Prerequisites * Developers guide * Obligatory Fine Print

FEATURES

ALTERNATIVES

A library to access and parse Windows Shortcut File (LNK) format.

A library to access the Extensible Storage Engine (ESE) Database File (EDB) format used in various Windows applications.

View physical memory as files in a virtual file system for easy memory analysis and artifact access.

A binary analysis platform for analyzing binary programs

Python tool for remotely or locally dumping RAM of a Linux client for digital forensics analysis.

Analyzing WiFiConfigStore.xml file for digital forensics on Android devices.

A toolkit for forensic analysis of network appliances with YARA decoding options and frame extraction capabilities.

ForensicMiner, Redefine DFIR Automations