applications/system

sleuthkit - The Sleuth Kit (TSK)

Website: http://www.sleuthkit.org
License: CPL and IBM and GPLv2+
Description:
The Sleuth Kit (TSK) is a collection of UNIX-based command line tools that
allow you to investigate a computer. The current focus of the tools is the
file and volume systems and TSK supports FAT, Ext2/3, NTFS, UFS,
and ISO 9660 file systems

Packages

sleuthkit-3.2.3-1.fc13.x86_64 [187 KiB] Changelog by Brian Carrier carrier@sleuthkit.org 3.2.3-1 (2011-10-10):
- Release 3.2.3-1
	New Features:
	- new TskAuto method (handleNotification()) that gets verbose messages that allow for debugging when the class makes decisions.
	- DOS partitions are loaded even if an extended partition fails to load
	- new TskAuto::findFilesInFs(TSK_FS_INFO *) method
	- Need to only specify first E01 file and the rest are found
	- Changed docs license to non-commercial
	- Unicode conversion routines fix invalid UTF-16 text during conversion
	- Added '-d' to tsk_recover to specify directory to recover

	Bug Fixes:
	- Added check to fatfs_open to compare first sectors of FAT if we used backup boot sector and verify it is FAT32.
	- More checks to make sure that FAT short names are valid ASCII
	- 3406523: Mactime size sanity check
	- 3393960: hfind reading of Windows input file
	- 3316603: Error reading last blocks of RAW CD images
	- Fixed bugs in how directories and files were detected in TskAuto
	
	Built to use libewf-alpha, the Version 2 interface

Listing created by Repoview-0.6.5-1.el5