Repository navigation

#

sleuthkit

The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file system data. The library can be incorporated into larger digital forensics tools and the command line tools can be directly used to find evidence.

C++
2853
10 小时前

An efficient tool for search files, directories, and alternate data streams directly from NTFS image files.

Python
26
1 年前

Forensic Analysis Tool for Btrfs File System.

C++
21
7 年前

An efficient tool for extracting files, directories, and alternate data streams directly from NTFS image files.

Python
21
1 年前

A series of Linux and Windows based Forensics labs. Tools used include: FTK, EnCase, Sleuthkit, Autopsy, Volatility, etc.

13
5 年前

Collection of popular DFIR tools in a lightweight and fast docker image

Dockerfile
12
6 年前

NBTempoW V. 2.1 is a forensic tool for making timelines from block devices image files (raw, ewf,physicaldrive, etc.). It uses TSK (The Sleuthkit) and it has been developed with Lazarus V. 1.6.2 ( Delphi compatible cross-platform IDE for Rapid Application Development). It runs only in Windows. If the device image file is splitted, you can select just the first chunk.

Pascal
8
8 年前

Python tool to extract File slacks from disk images.

Python
5
3 年前

Forensic Inode Analysis

Python
4
7 年前

Linux command line thumbstick file recovery script using SleuthKit

Python
3
6 年前

🕵️‍♂️ Unlock the story hidden in data - Your digital investigation partner. TheSleuthKit (TSK) Python Wrapper.

Python
3
5 个月前

Recover normal and deleted files from a partition

Python
3
7 年前

A Bash script that utilizes The Sleuth Kit to recover directories in their entirety

Shell
3
8 年前

Solutions to some assignments of the Digital Forensics course that I took during my master's degree at UNIGE (University of Genova).

1
1 年前

Automatic Github Workflows packager for autopsy

Shell
1
2 年前

An interactive shell for The Sleuth Kit's fls tool.

Go
1
6 年前

A collection of digital forensics lab reports covering Linux artifact recovery, shell history analysis, bash script forensics, and incident reconstruction using tools like SleuthKit, Auditd, and command-line utilities.

1
2 个月前

This repository is a mirror of https://gitlab.com/sequence/connectors/tsk

C#
0
3 年前

This repository offers practical labs in digital forensics, covering techniques for Linux, Windows, mobile, and network environments. Explore hands-on exercises like timeline reconstruction and memory analysis to enhance your investigative skills. 🖥️🔍

0
2 个月前