FICHA · AUR

dcfldd

DCFL (DoD Computer Forensics Lab) dd replacement with hashing

  • forensics-tool
  • CLI
  • Launchable
  • Runs in terminal
official+codex · reviewed · May 31, 2026 description in en

Description

Storage media can be imaged with a dd-like forensic tool that calculates hashes during acquisition. This is useful for investigators and administrators who need evidence-friendly disk copies.

Forensic copy tools can destroy data if source and destination are confused. Confirm devices, hash settings, logs, and write protection before imaging any real drive.

How to run

dcfldd

Commands: dcfldd

Permissions

Permissions not analysed for this source yet.