"The Forensics and Reporting submenu lists forensics and forensics-adjacent tools. These include:
BitCurator Mounter: A lightweight GUI tool to assist with mounting and unmounting devices.
Brunnhilde: A tool to generate aggregate reports of files in a directory or disk image based on input from Richard Lehane's Siegfried. Can optionally analyze content using bulk_extractor.
Bulk Reviewer: A tool to scan disk images and assist in the review of bulk_extractor reports.
bulk_extractor: A tool to scan disk images and directories for PII and other features.
DiskType: A tool to detect the content format of a disk or disk image. It knows about common file systems, partition tables, and boot codes.
md5deep: a set of programs to compute MD5, SHA-1, SHA-256 and other digests
nsrllookup: Query NSRL’s MD5 hashes of known pieces of software.
PhotoRec: File data recovery software designed to recover lost files including video, documents and archives from media.
RegRipper: Extract the contents of Windows registry backups.
TestDisk: Data recovery software, companion to PhotoRec."
Update/add the following text from Working in the BitCurator Environment, QS Guide
"The Forensics and Reporting submenu lists forensics and forensics-adjacent tools. These include:
to Forensics and Reporting Guides