Forensic Tool- Sleuth Kit

Tool Definition

The Sleuth Kit (TSK) is a library and collection of command line tools that allow you to investigate volume and file system data. The library can be incorporated into larger digital forensics tools and the command line tools can be directly used to find evidence. (Sanderson 2006)

Where It Was Found

I found this tool on internet. Some of the tools included in The Sleuth Kit include:

ils lists all metadata entries, such as an Inode.

blkls displays data blocks within a file system (formerly called dls).

fls lists allocated and unallocated file names within ...
