Digital Forensics Solutions

The Gold Standard in Forensic Collection, Processing and Analysis Featuring the FTK Forensic Toolkit

Get a Free FTK Software Demo
FTK: The First Name in Digital Forensics

Get a comprehensive view of exactly what happened and who was involved. With our award-winning, court-cited digital forensics expertise, Exterro gives you the industry’s best tools to help you analyze computers, mobile devices and network communications. When you know more, you can do more.

No matter the type of forensic investigation, there’s an FTK Solution designed specifically for your investigative workflow – all with the industry’s fastest processing engine for repeatable, defensible, forensically-sound collection and analysis.

The FTK Family of Digital Forensic Solutions
The Exterro Digital Forensics Advantage
The Gold Standard in Digital Forensics
The Gold Standard in Digital Forensics

Trusted by examiners and analysts worldwide, FTK solutions are a staple in every forensic investigator's toolkit. Create full-disk forensic images and process a wide range of data types from hard drive data to mobile devices, network data and Internet storage, all in a centralized, secure database. Decrypt files, crack passwords, parse registry files, and data carve in unallocated disk space. FTK Solutions find the data that other tools can’t!

Robust Mac Investigations
Robust Mac Investigations

Perform Mac investigations like never before by parsing and rendering Apple Mail, iMessage, iWork files, Safari browser data, Outlook for Mac email, Mac Artifacts, and Mac system summary data like Spotlight Search, KnowledgeC, and Power Log data. Mass deploy remote agents to MacOS devices via Jamf® . Process, parse, and review mobile data (including from iPhones) faster than ever, together with computer data in FTK’s single database.

Remote Agent Endpoint Collection
Remote Agent Endpoint Collection

Perform covert collection from on-network, off-network and MacOS endpoints, plus cloud data source collection without tipping off employees. Discrete agent-based collection into a secure, encrypted forensic container ensures data integrity during the transfer to the server. Perfectly suited for the remote workplace with site server collection and live preview.

Powerful, Scalable DPE Processing
Powerful, Scalable DPE Processing

FTK Solutions offer the fastest processing available on the market with virtually limitless scalability. A centralized processing farm with up to 16x distributed processing engine (DPE) capabilities can cut through large data sets in just hours vs. days. Process 7TB of data with 10 DPEs in just over 2 hours, and process AFF4 Mac images 8x faster than the competition.

Incident Response & Remediation
Incident Response & Remediation

Expose and investigate a variety of criminal and malicious activities, including data breaches, database tampering, inappropriate sharing of confidential company information, deletion of files, wiping of hard drives, or viewing of inappropriate content. Scan for Indicators of Compromise and perform volatile data collection from up to 20,000 remote endpoints at once. Stop risk in its tracks with remediation that gives you the ability to delete offending files, kill processes and stop non-compliant activities across endpoints.

AI & Automation for Maximum Efficiency
AI & Automation for Maximum Efficiency

Explicit Image Detection and AI-based video recognition easily identify Child Sexual Abuse Material (CSAM) and key points of interest in images and videos, saving hours of manual review time and protects investigators from viewing sensitive, disturbing material. Project Vic and CAID support ****. Save time by automating key processes in digital forensic investigations like collection, processing, case creation, searches, labels and exports – all without any user interaction. Integrate + orchestrate FTK Solutions with SOAR and SIEM solutions to instantly preserve endpoint evidence upon detection of an intrusion.

Featured Partners