Autopsy

E721456

Autopsy is a digital forensics platform that provides a graphical interface for analyzing disk images and file systems, commonly used in conjunction with The Sleuth Kit.

Try in SPARQL Jump to: Statements Referenced by

Statements (66)

Predicate Object
instanceOf digital forensics software
disk analysis tool
file system analysis tool
canBeExtendedWith custom ingest modules
plugins
designedFor corporate investigators
digital forensics analysts
incident responders
law enforcement
developedWith The Sleuth Kit NERFINISHED
hasAlternativeName Autopsy Forensic Browser NERFINISHED
hasComponent case management system
central repository
ingest modules
keyword search engine
reporting module
timeline viewer
license open-source license
name Autopsy
platform desktop application
primaryUse digital forensics
disk image analysis
evidence examination
file system analysis
incident response
provides graphical interface for The Sleuth Kit
supports blacklist and whitelist hash sets
export of reports in multiple formats
hash databases
multi-case correlation
supportsFileSystem Ext family
FAT
HFS+ NERFINISHED
ISO9660 NERFINISHED
NTFS NERFINISHED
exFAT
supportsImageType AFF images
E01 images
raw disk images
supportsTask bookmarking of evidence
case management
centralized case database
correlation of artifacts across cases
deleted file recovery
email analysis
exif metadata extraction
file recovery
file type identification
hash set comparison
hash-based file identification
ingest module automation
ingest-time processing
keyword list management
keyword search
logical file analysis
multi-user collaboration
post-ingest analysis
registry analysis
report generation
string extraction
tagging of artifacts
timeline analysis
unallocated space analysis
web artifact analysis
userInterface graphical user interface
uses The Sleuth Kit NERFINISHED

Referenced by (2)

Full triples — surface form annotated when it differs from this entity's canonical label.

sleuthkit integratesWith Autopsy
subject surface form: Sleuth Kit