官术网_书友最值得收藏!

  • Windows Forensics Cookbook
  • Oleg Skulkin Scar de Courcier
  • 116字
  • 2021-07-02 20:57:46

NTFS Analysis with The Sleuth Kit

The Sleuth Kit is a collection of command-line tools (and also a library) for the forensic analysis of drive images. These tools can help you with analysis of both volume and file system data (in a non-intrusive fashion, of course). It's cross-platform, so you can use any operating system you like to work with this toolkit. It supports both RAW and E01 images, so you can use any image that you acquired while following the previous recipes. This collection of tools will be very useful in your future digital forensic examinations: it supports a wide range of file systems, including NTFS, FAT, ExFAT, EXT2, EXT3, EXT4, HFS, and so on.

主站蜘蛛池模板: 米泉市| 防城港市| 左云县| 峨边| 如东县| 旌德县| 依安县| 芮城县| 乳山市| 舞阳县| 彰武县| 开封县| 乐亭县| 盘锦市| 东明县| 华蓥市| 于都县| 江达县| 布拖县| 永和县| 台湾省| 新野县| 南安市| 望江县| 栖霞市| 稻城县| 延安市| 黔东| 静宁县| 武威市| 双鸭山市| 偏关县| 明溪县| 五莲县| 青铜峡市| 康定县| 泊头市| 独山县| 三台县| 平和县| 肃南|