app-forensics/afflib
Library that implements the AFF image standard
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 3.7.1 |
|
+ |
|
+ |
|
|
|
+ |
|
|
|
|
+ |
app-forensics/aide
AIDE (Advanced Intrusion Detection Environment) is a replacement for Tripwire
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 0.15.1 |
|
~ |
|
|
|
|
|
|
|
|
|
|
~ |
| 0.14.2 |
|
+ |
|
|
|
|
|
|
|
|
|
|
+ |
| 0.13.1-r5 |
|
~ |
|
|
|
|
|
|
|
|
|
|
~ |
| 0.13.1-r3 |
|
+ |
|
|
|
|
|
|
|
|
|
|
+ |
| 0.13.1 |
|
+ |
|
|
|
|
|
|
|
|
|
|
+ |
app-forensics/air
A GUI front-end to dd/dc3dd
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 2.0.0-r1 |
|
+ |
|
|
|
|
|
+ |
|
|
|
|
+ |
app-forensics/autopsy
A graphical interface to the digital forensic analysis tools in The Sleuth Kit.
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 2.24-r1 |
|
+ |
|
~ |
|
|
|
+ |
|
|
|
|
+ |
app-forensics/chkrootkit
Tool to locally check for signs of a rootkit
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 0.49 |
+ |
+ |
+ |
+ |
+ |
|
~ |
+ |
+ |
+ |
+ |
+ |
+ |
| 0.48-r1 |
+ |
+ |
+ |
+ |
+ |
|
~ |
+ |
+ |
+ |
+ |
+ |
+ |
app-forensics/cmospwd
CmosPwd decrypts password stored in cmos used to access BIOS SETUP
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 5.1 |
|
+ |
|
|
|
|
|
|
|
|
|
|
+ |
app-forensics/examiner
Application that utilizes the objdump command to disassemble and comment foreign executable binaries
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 0.5-r2 |
|
+ |
|
|
|
|
|
+ |
|
|
|
|
+ |
app-forensics/foremost
A console program to recover files based on their headers and footers
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 1.5.7-r1 |
|
+ |
|
|
|
|
|
+ |
|
|
|
|
+ |
| 0.69 |
|
~ |
|
|
|
|
|
+ |
|
|
|
|
+ |
app-forensics/galleta
IE Cookie Parser
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 20040505_p1 |
|
~ |
|
|
|
|
|
~ |
|
|
|
|
+ |
app-forensics/libewf
Implementation of the EWF (SMART and EnCase) image format
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 20130416 |
|
~ |
|
~ |
|
|
|
~ |
|
|
|
|
~ |
| 20130331 |
|
|
|
|
|
|
|
|
|
|
|
|
|
| 20130303 |
|
|
|
|
|
|
|
|
|
|
|
|
|
| 20130128 |
|
|
|
|
|
|
|
|
|
|
|
|
|
| 20130120 |
|
|
|
|
|
|
|
|
|
|
|
|
|
| 20130105 |
|
|
|
|
|
|
|
|
|
|
|
|
|
| 20121209 |
|
+ |
|
+ |
|
|
|
+ |
|
|
|
|
+ |
app-forensics/lynis
Security and system auditing tool
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 1.3.0 |
|
+ |
|
|
|
|
|
|
|
|
|
|
+ |
app-forensics/mac-robber
mac-robber is a digital forensics and incident response tool that collects data
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 1.02 |
|
~ |
|
|
|
|
|
~ |
|
|
|
|
+ |
app-forensics/magicrescue
Find deleted files in block devices
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 1.1.9 |
|
+ |
|
|
|
|
|
~ |
|
|
|
|
+ |
app-forensics/memdump
Simple memory dumper for UNIX-Like systems
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 1.01 |
|
+ |
|
|
|
|
|
+ |
|
|
|
|
+ |
app-forensics/openscap
Framework which enables integration with the Security Content Automation Protocol (SCAP)
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 0.9.8 |
|
~ |
|
|
|
|
|
|
|
|
|
|
~ |
| 0.9.4.1 |
|
~ |
|
|
|
|
|
|
|
|
|
|
~ |
app-forensics/ovaldi
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 5.10.1.4 |
|
|
|
|
|
|
|
|
|
|
|
|
|
| 5.10.1.2 |
|
~ |
|
|
|
|
|
|
|
|
|
|
~ |
| 5.9.1 |
|
~ |
|
|
|
|
|
|
|
|
|
|
~ |
app-forensics/pasco
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 20040505_p1-r1 |
|
|
|
|
|
|
|
|
|
|
|
|
|
| 20040505_p1 |
|
~ |
|
|
|
|
|
~ |
|
|
|
|
+ |
app-forensics/rdd
Rdd is a forensic copy program
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 3.0.4 |
|
~ |
|
|
|
|
|
|
|
|
|
|
~ |
| 2.0.7 |
|
~ |
|
|
|
|
|
|
|
|
|
|
~ |
app-forensics/rifiuti
Recycle Bin Analyzer
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 20040505_p1 |
|
~ |
|
|
|
|
|
~ |
|
|
|
|
+ |
app-forensics/rkhunter
Rootkit Hunter scans for known and unknown rootkits, backdoors, and sniffers.
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 1.4.0 |
|
+ |
|
|
|
|
~ |
+ |
|
|
|
|
+ |
app-forensics/scalpel
A high performance file carver
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 2.0 |
|
~ |
|
|
|
|
|
|
|
|
|
|
~ |
app-forensics/unhide
A forensic tool to find hidden processes and TCP/UDP ports by rootkits/LKMs or other technique.
*unhide-20130526 (27 May 2013)
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 20130526 |
|
~ |
|
|
|
|
|
|
|
|
|
|
~ |
| 20121229 |
|
~ |
|
|
|
|
|
|
|
|
|
|
~ |
app-forensics/zzuf
Transparent application input fuzzer
|
alpha | amd64 | arm | hppa | ia64 | m68k | mips | ppc | ppc64 | s390 | sh | sparc | x86 |
| 0.13-r1 |
|
~ |
|
|
|
|
|
|
|
|
|
~ |
~ |
Last update:
19 Jun 2013
05:48 UTC
Legend
- + - stable
- ~ - unstable
- M - hardmask