Sleuth Kit

GPTKB entity

Statements (32)
Predicate Object
gptkbp:instanceOf digital forensics software
gptkbp:category gptkb:software
Computer forensics
gptkbp:developer Brian Carrier
gptkbp:feature open source
file recovery
command-line tools
metadata extraction
timeline analysis
disk image analysis
gptkbp:firstReleased 2003
https://www.w3.org/2000/01/rdf-schema#label Sleuth Kit
gptkbp:includes gptkb:Autopsy
gptkbp:license gptkb:Apache_License_2.0
gptkbp:operatingSystem gptkb:Windows
gptkb:macOS
gptkb:Linux
gptkbp:programmingLanguage C
gptkbp:relatedTo gptkb:Autopsy
gptkbp:supportsFormat gptkb:FAT
gptkb:UFS
gptkb:NTFS
gptkb:exFAT
gptkb:HFS+
Ext2
Ext3
Ext4
gptkbp:usedFor digital investigations
file system analysis
gptkbp:website https://www.sleuthkit.org/
gptkbp:bfsParent gptkb:Reverse_Engineering
gptkbp:bfsLayer 7