SANS Institute - The Sleuth Kit
From GCA ACT
Jump to navigationJump to search
Description
The Sleuth Kit is a suite of digital forensics tools that help investigators piece together evidence from a crime scene. It can be used to recover deleted files, locate hidden data, and analyze disk images. The tools are divided into four main categories: file system analysis, volatile memory analysis, email analysis, and web browser analysis. Each category contains several tools that can be used to recover data or find clues about what happened. The file system analysis tools can be used to recover deleted files or