Supported Evidence
These pages categorize the supported evidence and artifacts by OS, indicating whether each item is parsed and presented in the Investigation Hub and/or if the associated file is collected.
Windows CollectionsmacOS CollectionsLinux CollectionsIBM AIX CollectionsESXi Collections
The table below provides a count of the currently supported evidence and artefact items
Collection Platform:
Item Count
Windows
313
macOS
208
Linux
170
IBM AIX
15
ESXi
35
Grand Total
741
Last updated
Was this helpful?

