How this analysis was created: This summary and feature list were written by an AI model that read the project's README and public documentation pages. Each feature links to the documentation it came from; stars, license and language come straight from the GitHub API. The model does not read the source code, and the analysis is refreshed when the project is re-analysed. Learn more on our About page.
Command line utility and Python package to ease the (un)mounting of forensic disk images
Libewf is a library to access the Expert Witness Compression Format (EWF)
Velociraptor is a digital forensics and incident response platform, endpoint detection and response system, and visibility tool. It provides a query engine and remote forensic collector used to hunt for indicators of compromise and perform triage across a fleet of hosts. The system is distinguished by its specialized query language for interrogating host state and parsing binary files. It features a notebook environment that combines markdown documentation with executable query cells to standardize investigative workflows and enable collaborative reporting. The platform covers a wide range o
ntfstool is a collection of system utilities and drivers designed to manage NTFS-formatted volumes on macOS. It provides a file system driver and management tools that enable full read and write permissions for NTFS-formatted disks. The project includes a disk image manager that monitors storage use and automates the removal of unused image disk files. It also features a disk capacity monitor to track total and available storage space across all connected read-write volumes. The utility surface covers NTFS read-write mounting, storage administration, and the management of external storage de
A Mac OS X forensic utility which manages file system mounting in support of forensic procedures.
The main features of aburgh/disk-arbitrator are: Disk Image Management, Disk Image Handling, OS X Forensics.
Open-source alternatives to aburgh/disk-arbitrator include: ralphje/imagemounter — Command line utility and Python package to ease the (un)mounting of forensic disk images. libyal/libewf — Libewf is a library to access the Expert Witness Compression Format (EWF). velocidex/velociraptor — Velociraptor is a digital forensics and incident response platform, endpoint detection and response system, and… ntfstool/ntfstool — ntfstool is a collection of system utilities and drivers designed to manage NTFS-formatted volumes on macOS. It… forensicmatt/pancakeviewer — A DFVFS backed viewer project with a WxPython GUI. mac4n6/mac-locations-scraper — macOS/iOS database location scraper to extract location data.