Friday September 5, 2008 2:29 PM AEST
Latest Comments
"It's great that Google have recognised that security needs to be an important consideration with ..."
by Lloyd Borrett | Sep 5, 2008 11:53 AM
 
""Google arrived on the browser scene with the launch of Chrome"... Seems a bit misplaced to ..."
by Jeme | Sep 5, 2008 12:33 AM
 
"escn patch"
by harsha | Sep 4, 2008 3:25 PM
 
"Yes? And? So what? What were the recommendations of the report? What is the point of this ..."
by Tim | Sep 4, 2008 2:02 PM
 
"sdi"
by met3or | Sep 4, 2008 12:45 PM

Forensic Tool Kit v 1.70

  • Email a Friend
  • Print Page
Forensic Tool Kit v 1.70
Product Info
Supplier:
Product Rating
Features:  3
Ease of Use:  4
Performance:  4
Documentation:  3
Support:  3
Value for Money:  4
Overall Rating:  Overall Rating
 
For: Good workhorse, especially in a Windows environment with access to the industry's premier password recovery suite.
Against: Lacking some expected functionality and documentation could use a bit more beef.
Verdict: A good second computer forensic tool, especially for Windows-heavy operations.
By Peter Stephenson,CeRNS,
May 8, 2007 7:54 AM | 1 Comment
Tags: forensic | tools.
AccessData has packaged its complete tool set in one product called the Ultimate Toolkit. In addition to the Forensic Tool Kit, referred to by forensic analysts simply as FTK, the Ultimate Toolkit contains the full suite of password recovery tools, drive and media wipers, a registry viewer and other useful products.

Some of the tools interface nicely with FTK giving it a lot of power. At its core, however, FTK is the same computer forensic tool that it was last year and, while its biggest strength is its ability to take advantage of other AccessData tools, this product is pure computer forensics. Although its user interface is somewhat different from other products in its class, it still provides most of the same functions one would expect in a straightforward computer forensics tool.

FTK does not handle all of the types of media we would expect. However, it is strong in Windows files systems and does handle Linux file systems. This puts it at a bit of a disadvantage when compared with products that can acquire and analyze more file system types. FTK reads the most common types of images, including DD, EnCase and older versions of SafeBack, among others.

The product is easy to use if you are familiar with typical computer forensic tools. In addition, its terminology is consistent with the rest of the industry, a refreshing practice in a market that does not necessarily always use the same buzzwords from product to product. Installation is quick and straightforward, and it is up and ready to go in no time.

The documentation could be stronger. It consists of a single perfect-bound book, but many of the topics we expected, such as a discussion of the file systems FTK supports were not present. Support is an extra cost item. At US$1,095, we find that its value for the money is good given that the functionality may be somewhat less than one would expect in certain situations.

 
Ads by Google
Thoughts on this article? Add a comment below.
Comments: 1
that power full
SC Magazine - comments icon Posted by fg yonAug 8, 2008 2:46 AM

Report this comment as offensive >>

Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below: