Greg Freemyer
2005-03-04 22:48:50 UTC
My company uses FTK as it's normal analysis tool, but we image in Linux.
One of the main reasons we use FTK is the indexed search capability,
but we all know FTK has had stability issues in the past.
I went to a SMART lecture Wed. and was told that SMART does not have
an indexed search capability, but I see that Autopsy does.
Is there a webpage that compares FTK and Autopsy. I'm very
comfortable in Linux, so the OS is not an issue in and of itself.
FYI: Yes I know Autopsy is just a GUI wrapper around Sluethkit and other tools.
Greg
One of the main reasons we use FTK is the indexed search capability,
but we all know FTK has had stability issues in the past.
I went to a SMART lecture Wed. and was told that SMART does not have
an indexed search capability, but I see that Autopsy does.
Is there a webpage that compares FTK and Autopsy. I'm very
comfortable in Linux, so the OS is not an issue in and of itself.
FYI: Yes I know Autopsy is just a GUI wrapper around Sluethkit and other tools.
Greg
--
Greg Freemyer
-----------------------------------------------------------------
This list is provided by the SecurityFocus ARIS analyzer service.
For more information on this free incident handling, management
and tracking system please see: http://aris.securityfocus.com
Greg Freemyer
-----------------------------------------------------------------
This list is provided by the SecurityFocus ARIS analyzer service.
For more information on this free incident handling, management
and tracking system please see: http://aris.securityfocus.com