Mobius Forensic Toolkit is a forensic framework written in Python/GTK that manages cases and case items, providing an abstract interface for developing extensions. Cases and item categories are defined using XML files for easy integration with other tools.
| Tags | Security Forensics |
|---|---|
| Licenses | GPLv2 |
| Operating Systems | OS Independent |
| Implementation | Python |
Recent releases


Changes: This release features Extension Builder, an IDE for extensions. Extensions are now stored in XML files. Minor improvements were made.


Changes: The Category Model extension was created. The "Add item" window allows attribute setting when adding new items. Minor code clean-up has been done.


Changes: The part catalogue now imports and exports catalogues. Minor bugs were fixed.


Changes: A workaround was made for the GTK/SVG SIGFPE exception while rendering the Report Wizard icon. A bug in setup.py was fixed.


Changes: This release introduces the Floppy Imager extension, an extension for Linux featuring direct I/O, disk info retrieval, and multi-pass copy. You can eject and re-insert a disk and try to retrieve only bad sectors. This release also features the Mobius Tutorial. Windows' states are now persistent.
A tool which edits and replays captured network traffic back onto the wire.