macOS
brew install affliblocal Homebrew formula metadata
sudo port install afflibMacPorts ports tree · security/afflib/Portfile · Quelle: api.github.com
brew
Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für afflib in AI-Agent-Workflows.
Installation
brew install affliblocal Homebrew formula metadata
sudo port install afflibMacPorts ports tree · security/afflib/Portfile · Quelle: api.github.com
sudo dnf install afflibFedora Rawhide package metadata · afflib · Quelle: dl.fedoraproject.org
nix profile install nixpkgs#afflibnixpkgs package indexes · pkgs/by-name/af/afflib/package.nix · Quelle: api.github.com
sudo apt install afflib-toolsDebian stable package indexes · afflib-tools · Quelle: deb.debian.org
sudo zypper install afflib-developenSUSE Tumbleweed package metadata · afflib-devel · Quelle: download.opensuse.org
Überblick
Advanced Forensic Format
Verlauf
AFFLIBv3 is the library and tool suite for the Advanced Forensic Format, an open disk-image format for storing computer forensic data and metadata. The official README describes AFF as supporting forensic data plus metadata, digital signatures for chain of custody and integrity, encrypted disk-image storage, and use in both open-source and proprietary tools.
AFFLIB's official changelog begins with Release 1.0 on August 13, 2005, described as the initial release with the library description, README, basic library functionality, and four utilities. The README credits Basis Technology and Simson L. Garfinkel for the original 2005-2013 period and Phillip Hellewell for 2014-2025 maintenance.
The 2005 changelog shows rapid early development: large-file support, AMD64 fixes, write support, segment directories, aimage improvements, and archive conversion fixes. Later entries document ongoing portability, OS X updates, license cleanup, and a move toward GitHub preparation in 2012.
The README states AFFLIBv3 implements version 3 of the AFF format and is in maintenance mode while AFFv4 work continues. It contrasts AFFv3's purpose-built container with AFFv4's ZIP64 base and notes licensing differences between the two generations.
AFFLIB became part of forensic and disk-image tooling because it provided both a library and many command-line utilities: affcat, affcompare, affconvert, affcopy, affcrypto, affdiskprint, affinfo, affrecover, affsign, affstats, affuse, affverify, affxml, and others listed by the package facts and manpages.
The official README includes a section on using AFFLIB with The Sleuth Kit, noting that TSK officially supports a subset of the image formats AFFLIB supports and that users can specify image type afflib for the other formats. That is a concrete adoption bridge into a well-known forensic analysis toolkit.
AFFLIB tools convert between raw, splitraw, AFF, AFD, and AFM disk-image forms; compare disk images; copy with verification and chain-of-custody segment generation; repair files; print information and statistics; generate XML metadata; and produce diskprints.
The affinfo manpage describes AFF as an open and extensible file format to store disk images and metadata, useful in computer forensics investigations. It also documents hash validation options for MD5, SHA1, and page-level verification, showing the tool suite's integrity-checking focus.
AFFLIB is significant because it packages a whole forensic image ecosystem into Unix command-line tools plus a library. It is not merely a decoder: it covers conversion, verification, metadata extraction, encryption, signing, FUSE mounting, and XML export.
For package maintainers, AFFLIB is also an example of legacy-but-still-useful domain software: older file-format support, forensic workflow compatibility, C/C++ portability scars, and maintenance-mode upstream reality all matter more than shiny new features.
Sicherheitslage
narrow executable package without higher-risk signals.
grün Risiko · niedrig Konfidenz · appliance
Prüfe vor unbeaufsichtigter Agent-Nutzung, ob das Tool Klartext-Credentials liest, Remote-Zustand schreibt, Artefakte veröffentlicht oder Plugins ausführt.
Executables
| Befehl | Art | Sichtbarkeit | Hinweis |
|---|---|---|---|
affcat | cli | globales Executable | |
affcompare | cli | globales Executable | |
affconvert | cli | globales Executable | |
affcopy | cli | globales Executable | |
affcrypto | cli | globales Executable | |
affdiskprint | cli | globales Executable | |
affinfo | cli | globales Executable | |
affix | cli | globales Executable | |
affrecover | cli | globales Executable | |
affsegment | cli | globales Executable | |
affsign | cli | globales Executable | |
affstats | cli | globales Executable | |
affuse | cli | globales Executable | |
affverify | cli | globales Executable | |
affxml | cli | globales Executable |
Aktualität
Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.
https://github.com/sshock/AFFLIBv3
Installationsmetadaten
| Paketschlüssel | brew:afflib |
|---|---|
| Version | 3.7.22 |
| Paketmanager | Homebrew |
| Paketmanager-Seite | https://formulae.brew.sh/formula/afflib |
| Homepage | https://github.com/sshock/AFFLIBv3 |
| Repository | https://github.com/sshock/AFFLIBv3 |
| Upstream-Dokumentation | https://github.com/sshock/AFFLIBv3#readme |
| Lizenz | BSD-4-Clause AND LicenseRef-Homebrew-public-domain |
| Quellarchiv | https://github.com/sshock/AFFLIBv3/archive/refs/tags/v3.7.22.tar.gz |
| Abhängigkeiten | openssl@3 |
| Build-Abhängigkeiten | autoconf, automake, libtool, pkgconf, python@3.14 |
| Von macOS bereitgestellte Bibliotheken | curl, expat |
| Bottle | verfügbar (auf arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux) |
| Homebrew post-install | nicht definiert |
| Dienst | keiner deklariert |
Registry-Fakten
| Source Database | Homebrew formula API |
|---|---|
| Tap | homebrew/core |
| Full Name | afflib |
| Version Scheme | 0 |
| Revision | 0 |
| Bottle Stable Root URL | https://ghcr.io/v2/homebrew/core |
| Deprecated | no |
| Disabled | no |
| Keg Only | no |
| URL Keys |
|
Source-Datenbank-Treffer
Treffer stammen aus externen Paketmanager-Indizes und bleiben von lokalen Automic-Vault-Paketlinks getrennt.
afflib-tools 3.7.21-1
Advanced Forensics Format Library (utilities)
https://github.com/sshock/AFFLIBv3
sudo apt install afflib-toolslibafflib-dev 3.7.21-1
Advanced Forensics Format Library (development files)
https://github.com/sshock/AFFLIBv3
sudo apt install libafflib-devlibafflib0t64 3.7.21-1
Advanced Forensics Format Library
https://github.com/sshock/AFFLIBv3
sudo apt install libafflib0t64afflib
nix profile install nixpkgs#afflibafflib-tools 3.7.20-1.1ubuntu5
Advanced Forensics Format Library (utilities)
https://github.com/sshock/AFFLIBv3
sudo apt install afflib-toolslibafflib-dev 3.7.20-1.1ubuntu5
Advanced Forensics Format Library (development files)
https://github.com/sshock/AFFLIBv3
sudo apt install libafflib-devlibafflib0t64 3.7.20-1.1ubuntu5
Advanced Forensics Format Library
https://github.com/sshock/AFFLIBv3
sudo apt install libafflib0t64afflib 3.7.22-5.fc45
Library to support the Advanced Forensic Format
https://github.com/sshock/AFFLIBv3
sudo dnf install afflibafflib-devel 3.7.22-5.fc45
Development files for afflib
https://github.com/sshock/AFFLIBv3
sudo dnf install afflib-develafftools 3.7.22-5.fc45
Utilities for afflib
https://github.com/sshock/AFFLIBv3
sudo dnf install afftoolspython3-pyaff 3.7.22-5.fc45
Python3 binding for the AFFLIB
https://github.com/sshock/AFFLIBv3
sudo dnf install python3-pyaffafflib-devel 3.7.22-1.3
Library for working with the Advanced Forensics Format - Build support
https://github.com/sshock/AFFLIBv3
sudo zypper install afflib-develafflib-tools 3.7.22-1.3
Tools for working with the Advanced Forensics Format
https://github.com/sshock/AFFLIBv3
sudo zypper install afflib-toolslibafflib0 3.7.22-1.3
Library for working with the Advanced Forensics Format-Runtime support
https://github.com/sshock/AFFLIBv3
sudo zypper install libafflib0afflib
sudo port install afflibQuellspur
Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.
View the package source record on GitHub.