macOS
brew install affliblocal Homebrew formula metadata
sudo port install afflibMacPorts ports tree · security/afflib/Portfile · 来源: api.github.com
安装
brew install affliblocal Homebrew formula metadata
sudo port install afflibMacPorts ports tree · security/afflib/Portfile · 来源: api.github.com
sudo dnf install afflibFedora Rawhide package metadata · afflib · 来源: dl.fedoraproject.org
nix profile install nixpkgs#afflibnixpkgs package indexes · pkgs/by-name/af/afflib/package.nix · 来源: api.github.com
sudo apt install afflib-toolsDebian stable package indexes · afflib-tools · 来源: deb.debian.org
sudo zypper install afflib-developenSUSE Tumbleweed package metadata · afflib-devel · 来源: download.opensuse.org
概览
Advanced Forensic Format
历史
AFFLIBv3 is the library and tool suite for the Advanced Forensic Format, an open disk-image format for storing computer forensic data and metadata. The official README describes AFF as supporting forensic data plus metadata, digital signatures for chain of custody and integrity, encrypted disk-image storage, and use in both open-source and proprietary tools.
AFFLIB's official changelog begins with Release 1.0 on August 13, 2005, described as the initial release with the library description, README, basic library functionality, and four utilities. The README credits Basis Technology and Simson L. Garfinkel for the original 2005-2013 period and Phillip Hellewell for 2014-2025 maintenance.
The 2005 changelog shows rapid early development: large-file support, AMD64 fixes, write support, segment directories, aimage improvements, and archive conversion fixes. Later entries document ongoing portability, OS X updates, license cleanup, and a move toward GitHub preparation in 2012.
The README states AFFLIBv3 implements version 3 of the AFF format and is in maintenance mode while AFFv4 work continues. It contrasts AFFv3's purpose-built container with AFFv4's ZIP64 base and notes licensing differences between the two generations.
AFFLIB became part of forensic and disk-image tooling because it provided both a library and many command-line utilities: affcat, affcompare, affconvert, affcopy, affcrypto, affdiskprint, affinfo, affrecover, affsign, affstats, affuse, affverify, affxml, and others listed by the package facts and manpages.
The official README includes a section on using AFFLIB with The Sleuth Kit, noting that TSK officially supports a subset of the image formats AFFLIB supports and that users can specify image type afflib for the other formats. That is a concrete adoption bridge into a well-known forensic analysis toolkit.
AFFLIB tools convert between raw, splitraw, AFF, AFD, and AFM disk-image forms; compare disk images; copy with verification and chain-of-custody segment generation; repair files; print information and statistics; generate XML metadata; and produce diskprints.
The affinfo manpage describes AFF as an open and extensible file format to store disk images and metadata, useful in computer forensics investigations. It also documents hash validation options for MD5, SHA1, and page-level verification, showing the tool suite's integrity-checking focus.
AFFLIB is significant because it packages a whole forensic image ecosystem into Unix command-line tools plus a library. It is not merely a decoder: it covers conversion, verification, metadata extraction, encryption, signing, FUSE mounting, and XML export.
For package maintainers, AFFLIB is also an example of legacy-but-still-useful domain software: older file-format support, forensic workflow compatibility, C/C++ portability scars, and maintenance-mode upstream reality all matter more than shiny new features.
安全态势
narrow executable package without higher-risk signals.
绿色 风险 · 低 置信度 · appliance
在无人值守的代理使用前,请检查该工具是否读取明文凭据、写入远程状态、发布制品或调用插件。
可执行文件
| 命令 | 类型 | 暴露范围 | 备注 |
|---|---|---|---|
affcat | cli | 全局可执行文件 | |
affcompare | cli | 全局可执行文件 | |
affconvert | cli | 全局可执行文件 | |
affcopy | cli | 全局可执行文件 | |
affcrypto | cli | 全局可执行文件 | |
affdiskprint | cli | 全局可执行文件 | |
affinfo | cli | 全局可执行文件 | |
affix | cli | 全局可执行文件 | |
affrecover | cli | 全局可执行文件 | |
affsegment | cli | 全局可执行文件 | |
affsign | cli | 全局可执行文件 | |
affstats | cli | 全局可执行文件 | |
affuse | cli | 全局可执行文件 | |
affverify | cli | 全局可执行文件 | |
affxml | cli | 全局可执行文件 |
新鲜度
这些信号区分页生成时间、软件包管理器活动和上游发布比较。只有存在证据 URL 和可比较版本时,才会提示版本落后。
https://github.com/sshock/AFFLIBv3
安装元数据
| 软件包键 | brew:afflib |
|---|---|
| 版本 | 3.7.22 |
| 软件包管理器 | Homebrew |
| 软件包管理器页面 | https://formulae.brew.sh/formula/afflib |
| 主页 | https://github.com/sshock/AFFLIBv3 |
| 仓库 | https://github.com/sshock/AFFLIBv3 |
| 上游文档 | https://github.com/sshock/AFFLIBv3#readme |
| 许可证 | BSD-4-Clause AND LicenseRef-Homebrew-public-domain |
| 源码归档 | https://github.com/sshock/AFFLIBv3/archive/refs/tags/v3.7.22.tar.gz |
| 依赖 | openssl@3 |
| 构建依赖 | autoconf, automake, libtool, pkgconf, python@3.14 |
| macOS 提供的库 | curl, expat |
| Bottle | 可用 (于 arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux) |
| Homebrew post-install | 未定义 |
| 服务 | 未声明 |
注册表事实
| Source Database | Homebrew formula API |
|---|---|
| Tap | homebrew/core |
| Full Name | afflib |
| Version Scheme | 0 |
| Revision | 0 |
| Bottle Stable Root URL | https://ghcr.io/v2/homebrew/core |
| Deprecated | no |
| Disabled | no |
| Keg Only | no |
| URL Keys |
|
源数据库匹配
匹配项来自外部软件包管理器索引,并与本地 Automic Vault 软件包链接分开显示。
afflib-tools 3.7.21-1
Advanced Forensics Format Library (utilities)
https://github.com/sshock/AFFLIBv3
sudo apt install afflib-toolslibafflib-dev 3.7.21-1
Advanced Forensics Format Library (development files)
https://github.com/sshock/AFFLIBv3
sudo apt install libafflib-devlibafflib0t64 3.7.21-1
Advanced Forensics Format Library
https://github.com/sshock/AFFLIBv3
sudo apt install libafflib0t64afflib
nix profile install nixpkgs#afflibafflib-tools 3.7.20-1.1ubuntu5
Advanced Forensics Format Library (utilities)
https://github.com/sshock/AFFLIBv3
sudo apt install afflib-toolslibafflib-dev 3.7.20-1.1ubuntu5
Advanced Forensics Format Library (development files)
https://github.com/sshock/AFFLIBv3
sudo apt install libafflib-devlibafflib0t64 3.7.20-1.1ubuntu5
Advanced Forensics Format Library
https://github.com/sshock/AFFLIBv3
sudo apt install libafflib0t64afflib 3.7.22-5.fc45
Library to support the Advanced Forensic Format
https://github.com/sshock/AFFLIBv3
sudo dnf install afflibafflib-devel 3.7.22-5.fc45
Development files for afflib
https://github.com/sshock/AFFLIBv3
sudo dnf install afflib-develafftools 3.7.22-5.fc45
Utilities for afflib
https://github.com/sshock/AFFLIBv3
sudo dnf install afftoolspython3-pyaff 3.7.22-5.fc45
Python3 binding for the AFFLIB
https://github.com/sshock/AFFLIBv3
sudo dnf install python3-pyaffafflib-devel 3.7.22-1.3
Library for working with the Advanced Forensics Format - Build support
https://github.com/sshock/AFFLIBv3
sudo zypper install afflib-develafflib-tools 3.7.22-1.3
Tools for working with the Advanced Forensics Format
https://github.com/sshock/AFFLIBv3
sudo zypper install afflib-toolslibafflib0 3.7.22-1.3
Library for working with the Advanced Forensics Format-Runtime support
https://github.com/sshock/AFFLIBv3
sudo zypper install libafflib0afflib
sudo port install afflib来源线索
此页面由 av-web 从 scripts/generate-pkg-sqlite.py 生成的私有软件包 SQLite 工件提供。
View the package source record on GitHub.