mirror of
https://github.com/Ponce/slackbuilds
synced 2024-11-16 19:50:19 +01:00
b095354e3f
Signed-off-by: Willy Sudiarto Raharjo <willysr@slackbuilds.org>
22 lines
1 KiB
Text
22 lines
1 KiB
Text
The Sleuth Kit (TSK) is a library and collection of command line
|
|
tools that allow you to investigate disk images. The core
|
|
functionality of TSK allows you to analyze volume and file system
|
|
data. The plug-in framework allows you to incorporate additional
|
|
modules to analyze file contents and build automated systems. The
|
|
library can be incorporated into larger digital forensics tools and
|
|
the command line tools can be directly used to find evidence.
|
|
|
|
Sleuthkit can optionally use the following libraries to support
|
|
various disk image formats:
|
|
- libewf (for Expert Witness files)
|
|
- afflib (for Advanced Forensic Format files).
|
|
- libvhdi
|
|
- libvmdk
|
|
- libvslvm
|
|
|
|
Note: by default, Java support is disabled in this build. If you
|
|
require Java support, install a JDK (jdk, openjdk8, etc), source its
|
|
profile script, and run sleuthkit.SlackBuild with JAVA=yes in the
|
|
environment. Be warned that the Java build process downloads many
|
|
files, therefore it requires network access (something SlackBuild
|
|
scripts normally don't do).
|