sleuthkit

E192917

Sleuth Kit is an open-source digital forensics toolkit used to analyze disk images and recover evidence from file systems.

All labels observed (3)

Label Occurrences
Autopsy and Sleuth Kit 1
The Sleuth Kit 1
sleuthkit canonical 1

How this entity was disambiguated

Statements (45)

Predicate Object
instanceOf command-line tool
digital forensics software
open-source software
developer Brian Carrier
distributionModel free and open-source
genre digital forensics
incident response tool
hasComponent fls
fsstat
icat
img_stat
istat
mmls
tsk_gettimes
tsk_loaddb
tsk_recover
integratesWith Autopsy
license GPL
maintainer Basis Technology (historical)
operatingSystem Linux
Windows
macOS
partOf Autopsy and Sleuth Kit
linked to: sleuthkit
programmingLanguage C
sourceModel open source
supports deleted file recovery
disk image analysis
file system analysis
metadata extraction
partition analysis
timeline analysis
supportsFileSystem FAT
HFS+
NTFS
UFS
exFAT
ext2
ext3
ext4
usedFor computer forensics training
digital investigations
evidence recovery
file system forensics
incident response
website https://www.sleuthkit.org/

How these facts were elicited

Referenced by (3)

Full triples — surface form annotated when it differs from this entity's canonical label.

Kali Linux includesTool sleuthkit
Sleuth Kit partOf Autopsy and Sleuth Kit
subject linked to: sleuthkit
linked to: sleuthkit
The Coroner’s Toolkit influenced The Sleuth Kit
subject linked to: The Coroner’s Toolkit (TCT)
linked to: sleuthkit