The Gold Standard in Forensic Collection, Processing and Analysis Featuring the FTK Forensic ToolkitGet a Free FTK Software Demo
Get a comprehensive view of exactly what happened and who was involved. With our award-winning, court-cited digital forensics expertise, Exterro gives you the industry’s best tools to help you analyze computers, mobile devices and network communications. When you know more, you can do more.
No matter the type of forensic investigation, there’s an FTK Solution designed specifically for your investigative workflow – all with the industry’s fastest processing engine for repeatable, defensible, forensically-sound collection and analysis.
FTK® Imager is a FREE data preview and imaging tool that lets you quickly assess electronic evidence to determine if further analysis with a forensic tool such as Forensic Toolkit (FTK®) is warranted. Create forensic images of local hard drives, CDs and DVDs, thumb drives or other USB devices, entire folders, or individual files. Generate hash reports and mount images.
FTK® Forensic Toolkit is the industry’s preferred solution for repeatable, defensible full-disk image collection, processing and analysis. Parse and analyze data faster and better, all while ensuring your evidence is preserved in a forensically-sound manner.
FTK Enterprise provides deep visibility into live data, directly at the endpoint, helping you conduct faster, more targeted enterprise-wide post-breach, HR and compliance investigations. Quickly identify and understand the activity putting your organization at risk and develop a plan for eliminating it before it becomes an issue, all within a Zero Trust framework.
Divide and conquer massive data sets in a collaborative, scalable environment with FTK Lab. As a centralized investigative platform, FTK® Lab adds powerful web-based review functionality with lightning-fast DPE processing, getting evidence into the hands of investigators to solve cases and secure indictments faster. Easily deployed in a cloud environment like AWS or Azure to control costs and save on hardware.
FTK Central features limitless scalability, blazing-fast processing power and simplified forensic review on a collaborative web-based platform. The user-friendly and intuitive UI enables frontline investigators to easily review their own evidence, reducing lab backlogs. By centralizing evidence, agencies can collaborate within and across jurisdictions.
FTK Connect easily automates the power and speed of Exterro’s industry-leading FTK solutions when performing forensic investigations, incident response workflows, or securing corporate assets. Automate key processes like collection, processing, case creation, searches, labels and exports – all without any user interaction. Integrate and orchestrate with SOAR/SIEM solutions to capture and preserve endpoint data immediately upon detection of a possible threat.
Trusted by examiners and analysts worldwide, FTK solutions are a staple in every forensic investigator's toolkit. Create full-disk forensic images and process a wide range of data types from hard drive data to mobile devices, network data and Internet storage, all in a centralized, secure database. Decrypt files, crack passwords, parse registry files, and data carve in unallocated disk space. FTK Solutions find the data that other tools can’t!
Perform Mac investigations like never before by parsing and rendering Apple Mail, iMessage, iWork files, Safari browser data, Outlook for Mac email, Mac Artifacts, and Mac system summary data like Spotlight Search, KnowledgeC, and Power Log data. Mass deploy remote agents to MacOS devices via Jamf® . Process, parse, and review mobile data (including from iPhones) faster than ever, together with computer data in FTK’s single database.
Perform covert collection from on-network, off-network and MacOS endpoints, plus cloud data source collection without tipping off employees. Discrete agent-based collection into a secure, encrypted forensic container ensures data integrity during the transfer to the server. Perfectly suited for the remote workplace with site server collection and live preview.
FTK Solutions offer the fastest processing available on the market with virtually limitless scalability. A centralized processing farm with up to 16x distributed processing engine (DPE) capabilities can cut through large data sets in just hours vs. days. Process 7TB of data with 10 DPEs in just over 2 hours, and process AFF4 Mac images 8x faster than the competition.
Expose and investigate a variety of criminal and malicious activities, including data breaches, database tampering, inappropriate sharing of confidential company information, deletion of files, wiping of hard drives, or viewing of inappropriate content. Scan for Indicators of Compromise and perform volatile data collection from up to 20,000 remote endpoints at once. Stop risk in its tracks with remediation that gives you the ability to delete offending files, kill processes and stop non-compliant activities across endpoints.
Explicit Image Detection and AI-based video recognition easily identify Child Sexual Abuse Material (CSAM) and key points of interest in images and videos, saving hours of manual review time and protects investigators from viewing sensitive, disturbing material. Project Vic and CAID support ****. Save time by automating key processes in digital forensic investigations like collection, processing, case creation, searches, labels and exports – all without any user interaction. Integrate + orchestrate FTK Solutions with SOAR and SIEM solutions to instantly preserve endpoint evidence upon detection of an intrusion.