👹
Sleuthifer
  • What is this?
  • Digital Forensics
    • Cipher (Anti-forensics)
    • PowerShell History
    • File Carving
      • FAT32 File Carving
    • FTK Imager
      • Imaging & Verifying
    • Wireshark
      • Protocol Summary and DHCP
      • Follow TCP Stream and SMTP
  • Memory Analysis
    • Part 1: Memory and Volatility
  • Incident Response
    • You've been hit, popped or breached?
    • Threat Intelligence & Intrusion Analysis
  • Tools
  • Useful Links
Powered by GitBook
On this page

Was this helpful?

Tools

PreviousThreat Intelligence & Intrusion AnalysisNextUseful Links

Last updated 1 year ago

Was this helpful?

  • ~ Imaging tool

  • ~ Opensource end-to-end forensic tool

  • ~ Memory forensics

  • ~ Image metadata viewer

  • ~ Extract information from disk images

  • ~ A number of tools (Just go look)

  • ~ Network discovery and security auditing

FTK Imager
Autopsy
Volatility
Jeffrey's Image Metadata Viewer
Bulk Extractor
Eric Zimmerman Tools
Nmap