In our college program, our main tools are AccessData's FTK. We've talked about Penguin Sleuth, Helix and Brian Carrier's forensic tools as well. But I was wondering if they're are any other alternative products out there? What do you guys use? I was suggested to look for some open source tools as well.
October 11th, 2007, 10:58 PM
Check out FCCU. It's a Belgian linux-based forensics CD. It's probably very similar to Helix.
October 12th, 2007, 03:23 PM
Autopsy combined with memdump/dd/macdaddy (from Rob Lee @ SANS) is fairly lethal in my opinion...
At least on the free side...
October 15th, 2007, 03:39 AM
test post. dont mind
October 15th, 2007, 03:55 AM
Thanks guys. Though I had already mentioned I knew of Brian Carrier's stuff, that Belgian tool was interesting.