Supported Evidence
These pages categorize the supported evidence and artifacts by OS, indicating whether each item is parsed and presented in the Investigation Hub and/or if the associated file is collected.
Windows CollectionsmacOS CollectionsLinux CollectionsIBM AIX CollectionsESXi Collections
The table below provides a count of the currently supported evidence and artefact items
Collection Platform:
Item Count
Windows
317
macOS
216
Linux
165
IBM AIX
26
ESXi
35
Grand Total
759
Last updated
Was this helpful?

