Clear all

Linux forensics

1 Posts
1 Users
0 Reactions
Posts: 13
Active Member
Topic starter


is there a good Tool for Linux forensics? I am aware I can use TSK and multiple small tools for spezialized Tasks but is there nothing that work like Belkasoft X, OSForensics or tools like that?

At least I would want to have a tool that parse various logfiles and artefacts and offer me a nicely structured overview. Autopsy is not bad but just do a small fraction of the needed tasks. Are there some Ingest Modules which would get me a few steps further? Especially parsing the Logs and incooperating some important events into the Timeline would be nice!

How is EnCase or FTK doing on a Linux case?

Posted : 28/10/2021 12:40 am
Topic Tags