This site includes four major projects.
The Sleuth Kit™ is a collection of
command line digital investigation tools. The tools run on Linux, OS
X, FreeBSD, OpenBSD, and Solaris and can analyze FAT, NTFS, UFS,
EXT2FS, and EXT3FS.
Autopsy™ is a
graphical interface to The Sleuth Kit and other tools.
This makes it much easier and faster to investigate
Sleuth Kit Hadoop Framework is
a project to use cloud computing to analyze hard drives on a large
mac-robber is a tool that will collect
temporal data from mounted file systems. The data can be used
to make a timeline of file activity on the system using tools
from The Sleuth Kit.