Automic VaultAutomic Vault

brew

Installer bulk_extractor avec Homebrew, MacPorts, Nix, zypper

Consultez les chemins d'installation, exécutables, métadonnées et notes de sécurité de bulk_extractor pour les workflows d'agents IA.

installation

Commandes d'installation supplémentaires

macOS

Homebrewvérifié · 100%
brew install bulk_extractor

local Homebrew formula metadata

MacPortsvérifié · 94%
sudo port install bulk_extractor

MacPorts ports tree · security/bulk_extractor/Portfile · Source: api.github.com

Linux

Nixvérifié · 92%
nix profile install nixpkgs#bulk_extractor

nixpkgs package indexes · pkgs/by-name/bu/bulk_extractor/package.nix · Source: api.github.com

openSUSE zyppervérifié · 92%
sudo zypper install bulk_extractor

openSUSE Tumbleweed package metadata · bulk_extractor · Source: download.opensuse.org

aperçu

Résumé du paquet

Stream-based forensics tool

Commandes et alias

  • bulk_extractor

historique

Historique du projet et usages

bulk_extractor is a stream-based digital-forensics tool that scans raw media, disk images, files, and directories for structured artifacts without first depending on filesystem parsing. It is historically important because it made bulk data analysis a fast triage step in forensic workflows.

Historique du projet

bulk_extractor predates its current GitHub repository. The NEWS file includes 2010 release announcements for versions 0.4.2 through 0.7.0, with features such as context stop lists, compressed-data carving, crash protection, POSIX threading, ZIP/GZIP/PDF recovery, and hibernation-file extraction.

The `simsong/bulk_extractor` repository was created on 2012-04-03. The README describes the tool as a high-performance digital forensics exploitation tool that extracts email addresses, credit card numbers, JPEGs, JSON snippets, search terms, and other features, storing results in text files and histograms for inspection and downstream processing.

The README recommends citing Simson Garfinkel's 2013 Computers & Security paper, `Digital Media Triage with Bulk Data Analysis and bulk_extractor`, which formalized the technique and helped anchor the tool in academic and law-enforcement forensic practice.

Historique d'adoption

Adoption came from forensic triage needs: investigators could run bulk_extractor against disk images or memory artifacts and quickly get feature files, histograms, and leads without mounting or interpreting the filesystem first.

The project also included BEViewer for inspecting output, documented production downloads through GitHub releases, and kept packaging-friendly build instructions for Unix-like systems. Package managers such as Homebrew, MacPorts, Nix, and openSUSE carry it because forensic analysts and security researchers often need repeatable installs on analysis workstations.

Modes d'utilisation

Users point `bulk_extractor` at a disk image, file, directory, or other data source and review generated feature files and reports. It recursively examines decoded data, which lets it find artifacts in compressed, encoded, or carved content that simpler scanners miss.

The tool supports scanner selection, histograms, debugging environment variables, and VM-based build recipes. Modern 2.x development requires C++17 and uses submodules such as be13_api and DFXML.

Pourquoi les passionnés de paquets s'y intéressent

bulk_extractor is significant because it packages a research-grade forensic idea into a normal CLI: scan every byte, extract features, and produce plain text output. That combination makes it useful both in investigations and in scripted security pipelines.

For package nerds, it is also a classic example of a domain-specific tool with deep native-code build requirements, academic provenance, GUI adjuncts, and long-lived release history that still belongs in general-purpose package managers.

Chronologie

  • 2010: 0.4.x through 0.7.0 release announcements document early stop-list, carving, threading, and crash-protection work.
  • 2012: Public `simsong/bulk_extractor` GitHub repository is created.
  • 2013: Computers & Security publishes the bulk data analysis and bulk_extractor paper cited by the project.
  • 2024: 2.1.1 release notes document ongoing 2.x maintenance.
  • 2026: The repository remains active as the development tree for current bulk_extractor work.

Related projects

  • bulk_extractor is related to BEViewer, DFXML, be13_api, forensic carving tools, disk-image analysis workflows, memory and hibernation-file analysis, and downstream feature-file processing scripts.

posture de sécurité

Aucune couverture d'outil protégé trouvée pour le moment

Aucun manifest local de gestion des secrets correspondant n'a été trouvé pour bulk_extractor. Les métadonnées de paquet Nucleus restent publiées ici afin que la couverture future dispose d'une URL stable.

Comportement d'installation

  • Aucun hook post-install Homebrew n’est enregistré dans les métadonnées de formule.
  • Les métadonnées de bottle Homebrew sont disponibles pour 6 plateformes.
  • Les métadonnées de compilation listent 2 dépendances de compilation.

Revue recommandée

Avant une utilisation sans surveillance par un agent, vérifiez si l'outil lit des identifiants en clair, écrit un état distant, publie des artefacts ou lance des plugins.

exécutables

Exécutables installés

CommandeTypeExpositionNote
bulk_extractorcliexécutable global

fraîcheur

Version et fraîcheur

Ces signaux séparent l'âge de génération de la page, l'activité du gestionnaire de paquets et la comparaison avec les versions amont. Un retard de version n'est signalé que lorsqu'une URL de preuve et des versions comparables sont présentes.

page générée2026-07-25
version du gestionnaire2.1.1
gestionnaire mis à jour2026-05-13
données localesOK
amontnot checked
dernière version détectéenon détecté

https://github.com/simsong/bulk_extractor

métadonnées d'installation

Métadonnées du paquet

Clé du paquetbrew:bulk_extractor
Version2.1.1
Gestionnaire de paquetsHomebrew
Page du gestionnaire de paquetshttps://formulae.brew.sh/formula/bulk_extractor
Page d'accueilhttps://github.com/simsong/bulk_extractor/wiki
Dépôthttps://github.com/simsong/bulk_extractor
Docs amonthttps://github.com/simsong/bulk_extractor#readme
LicenceMIT
Archive sourcehttps://github.com/simsong/bulk_extractor/releases/download/v2.1.1/bulk_extractor-2.1.1.tar.gz
Dernière mise à jour2026-05-13T00:05:26Z
Pulseupdated
Dépendances de compilationpkgconf, re2
Bibliothèques fournies par macOSexpat, ncurses
Bouteilledisponible (sur arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
post-install Homebrewnon défini
Serviceaucun déclaré

faits du registre

Détails de la base source

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namebulk_extractor
Version Scheme0
Revision3
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

correspondances dans les bases sources

Autres enregistrements de gestionnaires de paquets

Les correspondances proviennent d’index externes de gestionnaires de paquets et restent séparées des liens de paquets Automic Vault locaux.

Nix95%

bulk_extractor

nix profile install nixpkgs#bulk_extractor
  • normalized package name match
  • Correspondance par : Bulk Extractor
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/bu/bulk_extractor/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
zypper95%

bulk_extractor 2.1.1-1.2

Bulk Email and URL extraction tool

https://github.com/simsong/bulk_extractor/wiki/Introducing-bulk_extractor

sudo zypper install bulk_extractor
  • License: GPL-3.0-or-later
  • Category: Productivity/File utilities
  • Architecture: x86_64
  • Source Package: bulk_extractor
  • 10 Dépendances
  • 1 fournit
  • normalized package name match
  • Correspondance par : Bulk Extractor
openSUSE Tumbleweed package metadata · download.opensuse.org · openSUSE Tumbleweed package metadata: bulk_extractor from https://download.opensuse.org/tumbleweed/repo/oss/repodata/be8d3611d25469107f32075a1697e69ec57a2b850b42348a658cc671ad5ec2b50760d02c3e59524d50da9a11d5be799bdaffba2e166e8ca8858512e3c0bd665d-primary.xml.zst
MacPorts95%

bulk_extractor

sudo port install bulk_extractor
  • normalized package name match
  • Correspondance par : Bulk Extractor
MacPorts ports tree · api.github.com · MacPorts ports tree: security/bulk_extractor/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1

piste source

Généré depuis les données du dépôt

Cette page est servie par av-web depuis l'artéfact SQLite privé des paquets généré par scripts/generate-pkg-sqlite.py.

Sources utilisées

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment