Notifications
Clear all

Softwares

5 Posts
5 Users
0 Reactions
635 Views
(@moe1989)
Active Member
Joined: 15 years ago
Posts: 5
Topic starter  

Hiiii guys.

Am trying to gather different open source softwares in order to perform an investigation. Hope you guys can help.
Am trying to find a software that is a forensic binary data search tool that is used to identify targeted graphics file contents and/or foreign language words and phrases stored in the form of computer data.
and next a software that is a data collection tool to capture file slack and unallocated (erased file) data.
i THINK encase does allow me to do those things but is there any other open source software that is easier to use.

Thank you.


   
Quote
(@michalwrp)
Active Member
Joined: 16 years ago
Posts: 16
 

There are some open source forensic tools like DFF from digital-forensic.org or Autopsy from sleuthkit.org which can allow you to perform simple investigations.

There are also special open source tools like Foremost/Scalpel for recovering erased files based on their headers and footers (I am not sure is this what you want)

But I guess your question is more “getting started” type…

The truth is, if you want forensic tool easy to use, you should look at “Big 3” Encase, FTK, X-Ways.

I strongly recommend You to read e.g. “The Official EnCE - EnCase Certified Examiner Study Guide” by Steve Bunting. It is great book just to get started with computer forensics… and has EnCase demo included. When you learn one of this “Big 3” tools, you will be able to find and use open source equivalents of some of their functions…

Hope this help…


   
ReplyQuote
(@bithead)
Noble Member
Joined: 20 years ago
Posts: 1206
 

Am trying to find a software that is a forensic binary data search tool that is used to identify targeted graphics file contents and/or foreign language words and phrases stored in the form of computer data.

I am not sure that there are any open source steganography tools.

and next a software that is a data collection tool to capture file slack and unallocated (erased file) data.

There are a lot of tools that can do this. FTK Imager is very popular as well as the various iterations of DD. What you do after you capture the data is another question.


   
ReplyQuote
jaclaz
(@jaclaz)
Illustrious Member
Joined: 18 years ago
Posts: 5133
 

Hiiii guys.

Am trying to gather different open source softwares …..

Have you noticed there is a sub-forum
Forum Index -> Open Source and Freeware
http//www.forensicfocus.com/index.php?name=Forums&file=viewforum&f=3

That would be a nice place to start reading… and asking questions….

A forensic distro, Caine
http//www.forensicfocus.com/index.php?name=Forums&file=viewtopic&t=4802

Has

XSteg
GUI stegdetect interface

http//www.caine-live.net/page11/page11.html

jaclaz


   
ReplyQuote
(@douglasbrush)
Prominent Member
Joined: 16 years ago
Posts: 812
 

"open source softwares"
Open source or open license or "free"?

Follow the above posts. Get your free copy of SIFT - lots of goodies in there and gives you a base platform to work from. http//computer-forensics.sans.org/community/downloads/

"Am trying to find a software that is a forensic binary data search tool that is used to identify targeted graphics file contents and/or foreign language words and phrases stored in the form of computer data."
So signature analysis, data carving and encoding analysis?


   
ReplyQuote
Share: