The Sleuth Kit (sleuthkit)

The Sleuth Kit

sleuthkit

Geek Repo

Home Page:http://www.sleuthkit.org

Github PK Tool:Github PK Tool

The Sleuth Kit's repositories

sleuthkit

The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file system data. The library can be incorporated into larger digital forensics tools and the command line tools can be directly used to find evidence.

autopsy

Autopsy® is a digital forensics platform and graphical interface to The Sleuth Kit® and other digital forensics tools. It can be used by law enforcement, military, and corporate examiners to investigate what happened on a computer. You can even use it to recover photos from your camera's memory card.

scalpel

Scalpel is an open source data carving tool. It is not being actively maintained.

autopsy_addon_modules

Repo to store compiled modules or links to 3rd party add-on modules.

hadoop_framework

This is a prototype system that uses Hadoop to process hard drive images.

libewf_64bit

Copy of the libewf source code that is configured for a 64-bit MS Visual Studio build.

Language:CLicense:LGPL-3.0Stargazers:13Issues:10Issues:2

Autopsy-WindowsRegistryContentViewer

Willi Ballenthin's module to view the registry as a content viewer. This has been moved into part of the core Autopsy release and is no longer needed as an add-on module.

Language:JavaLicense:Apache-2.0Stargazers:6Issues:3Issues:0

Autopsy-WindowsRegistryIngestModule

Will Ballenthin's module to extract all registry key/values as files during ingest. He is no longer maintaining it and we made some minor updates.

Language:JavaLicense:Apache-2.0Stargazers:5Issues:3Issues:0

libvhdi_64bit

64-bit / VS 2015 version of libvhdi (https://github.com/libyal/libvhdi)

Language:CLicense:LGPL-3.0Stargazers:5Issues:7Issues:0

libvmdk_64bit

64-bit / VS 2015 version of libvmdk (https://github.com/libyal/libvmdk)

Language:CStargazers:5Issues:7Issues:0

JavaStixBindings

We needed some jaxb bindings for STIX for an Autopsy module. This is temporary code until the official MITRE Java bindings are published.

Language:JavaLicense:NOASSERTIONStargazers:4Issues:3Issues:0

libvmdk

Library and tools to access the VMware Virtual Disk (VMDK) format

Language:CLicense:LGPL-3.0Stargazers:3Issues:2Issues:0
Stargazers:0Issues:0Issues:0

libewf-legacy

Legacy version of libewf

Language:CLicense:LGPL-3.0Stargazers:0Issues:2Issues:0

sevenzipjbinding

7-Zip-JBinding

Language:C++License:NOASSERTIONStargazers:0Issues:2Issues:0

yara-java

Java bindings for Yara

Language:CLicense:Apache-2.0Stargazers:0Issues:2Issues:0