A collection of forensics tools that allows you to conduct full forensic examinations. Build off TSK
- Has disk forensics mode NTFS, FAT, ext, APFS
- Timeline generation of user activity
- keyword search and file content analysis
- Registry, browser, email artifact extraction
- Hash-based filters using National Software Reference Library
- Image support - RAW, E01, Virtual Machine Disk Format