Wednesday, June 18, 2008

Forensics Tools

I have to do some forensics work, and the tools below are very handy -

http://www.afflib.org/

http://www.pyflag.net/cgi-bin/moin.cgi


http://ftimes.sourceforge.net/FTimes/

http://p2pmarshal.atc-nycorp.com/

Cheers ;]

3 comments:

Damon said...

Not sure if it's related to what you're working on but I used Autopsy/The Sleuth Kit recently (http://www.sleuthkit.org/autopsy/) and they were pretty nice for dealing with disk images.

Anonymous said...

Those are all disk image forensic tools. I thought you were more into network forensics. A good place to find Network Forensic Analysis Tools (NFAT) is:

http://www.forensicswiki.org/index.php?title=Tools:Network_Forensics

C.S.Lee said...

Hi damon,

Yeah, I think most people know about sleuthkit and autopsy, so I don't mention it here.

To anonymous,

My primary field is network forensics, but working as security guy you need to deal with other related works too.

Cheers ;]