is there a good Tool for Linux forensics? I am aware I can use TSK and multiple small tools for spezialized Tasks but is there nothing that work like Belkasoft X, OSForensics or tools like that?
At least I would want to have a tool that parse various logfiles and artefacts and offer me a nicely structured overview. Autopsy is not bad but just do a small fraction of the needed tasks. Are there some Ingest Modules which would get me a few steps further? Especially parsing the Logs and incooperating some important events into the Timeline would be nice!
How is EnCase or FTK doing on a Linux case?
Posted : 28/10/2021 12:40 am