blob: 4d0c47b6b9a629b96ca34eb158735d84dc78d0a9 (
plain) (
blame)
1
2
3
4
5
6
7
8
9
10
11
12
|
The Sleuth Kit (TSK) is a library and collection of command line tools that
allow you to investigate volume and file system data. The library can be
incorporated into larger digital forensics tools and the command line tools can
be directly used to find evidence.
The media management tools allow you to examine the layout of disks and other
media. The Sleuth Kit supports DOS partitions, BSD partitions (disk labels), Mac
partitions, Sun slices (Volume Table of Contents), and GPT disks. With these
tools, you can identify where partitions are located and extract them so that
they can be analyzed with file system analysis tools.
WWW: http://www.sleuthkit.org/sleuthkit/
|