applications/system

sleuthkit - The Sleuth Kit (TSK)

Website: http://www.sleuthkit.org
License: CPL and IBM and GPLv2+
Description:
The Sleuth Kit (TSK) is a collection of UNIX-based command line tools that
allow you to investigate a computer. The current focus of the tools is the
file and volume systems and TSK supports FAT, Ext2/3, NTFS, UFS,
and ISO 9660 file systems

Packages

sleuthkit-4.4.1-1.fc20.src [8.2 MiB] Changelog by Lawrence R. Rogers (2017-05-30):
- Release 4.4.1-1
	- New Features:
		-- Can create a sparse VHD file when reading a local drive with new
		   IMAGE_WRITER structure. Currently being used by Autopsy, but no TSK
		   command line tools.

	- Bug fixes:
		-- Lots of cleanup and fixes. Including:
			-- memory leaks
			-- UTF8 and UTF16 cleanup 
			-- Missing NTFS files (in fairly rare cases)
			-- Really long folder structures and database inserts
sleuthkit-4.4.0-1.fc20.src [8.2 MiB] Changelog by Lawrence R. Rogers (2017-01-17):
- Release 4.4.0-1
	4.4.0
	  Compiling in Windows now uses Visual Studio 2015
	  tsk_loaddb now adds new files for slack space and JNI was upgraded accordingly.

	4.3.0
	  NTFS works on 4k sectors
	  Added support in Java to store local files in encoded form (XORed)
	  Added Java Account object into datamodel
	  Added notion of a review status to blackboard artifacts
	  Upgraded version of PostgreSQL
	  Various minor bug fixes
sleuthkit-4.2.0-6.fc20.src [9.0 MiB] Changelog by Lawrence R. Rogers (2016-07-18):
- Release 4.2.0-6
	Rebuilt to use libewf-20160718, release 20140608.1.
	Also patched to 20160718.
sleuthkit-4.2.0-2.fc20.src [8.7 MiB] Changelog by Lawrence R. Rogers (2015-10-07):
- Release 4.2.0-2
	Patch 2 - bring up to 2015-10-07 version from github
	Patch 3 - fix srch_strings by reverting source back to 4.1.3 version

Listing created by Repoview-0.6.6-1.el6