Kali Linux Forensics
As was mentioned earlier in this chapter, the Kali Linux distribution has a number of forensics tools. Even if you have a commercial tool that you are satisfied with such as OSForensics, FTK, or Encase, it is often a very good idea to ensure quality control by repeating certain tests with a second tool. Having an open source tool such as Autops is certainly a cost-effective way to do this. You can see the tools available to you in FIGURE 9-8.
Autopsy launches as a command line; however, that just gives you a web address to enter into your browser. This is because Autopsy is a web-based graphical user interface for the command-line tool Sleuth Kit. Both Autopsy and Sleuth Kit are very well known and widely respected open ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access