HASHDEEP

Hashdeep is a flexible tool for computing, comparing, and auditing file hashes. It is intended for report and list hash-based evaluation. It is important to retain the authenticity and integrity of information when engaging in virtual investigations. It has a collection of numerous hash algorithms, such as Tiger, Whirlpool, MD5, SHA-1, and SHA-256. 

Because hashdeep can analyze directories recursively, it is perfect for performing high-quality data integrity tests. Multi-Hash support and recursive processing are the key features of Hashdeep. It is pre-installed in Kali Linux. You can also install it with the following command running it simply on the terminal. 

sudo apt-get install hashdeep 

HASHDEEP: A Digital Forensics tool in kali linux

In today’s digital world, where most people are connected with digital assets directly or indirectly. Now securing these digital assets and maintaining the security of data is especially important to maintain our privacy and integrity. In this article, we are going to learn about the HASHDEEP tool, which is an open-source digital forensics tool. 

Digital forensics is a branch of forensic science that focuses on the identification, seizure, acquisition, and analysis of data stored digitally or electronically. It has three main branches: computer forensics, mobile device forensics, and network forensics. 

Similar Reads

HASHDEEP:

Hashdeep is a flexible tool for computing, comparing, and auditing file hashes. It is intended for report and list hash-based evaluation. It is important to retain the authenticity and integrity of information when engaging in virtual investigations. It has a collection of numerous hash algorithms, such as Tiger, Whirlpool, MD5, SHA-1, and SHA-256....

Working with Hashdeep:

Step 1: Go to your home directory, create one folder, and name it as you wish. For example, name it Hashdeep....

Conclusion:

In this article, we have understood the workings of the Hashdeep tool. We had done one task where we created two .txt files named Trial_File.txt and Another_Trial_file.txt. We have written different text in both files. then, with the help of the Hashdeep tool, computed the hash of the Trial_file.txt file and saved this hash in the Hash_value.txt file. In the auditing phase, we had compared the hash value of the Trial_file.txt file with the Hash_value.txt file data and got the result that the audit passed, but when we compared the hash of the Another_Trial_file.txt file with the Hash_value.txt file, in which the hash of the Trial_file.txt is saved, we got the result that the audit failed. This is a simple demonstration of the tool; we can use it according to our need for checking the integrity of the data. If we want to use only a single hash function, not all that are set by default, we can do this by replacing the hashdeep with hashAlgoNamedeep in each command.For example, if we want to use only the MD5 hash function, we have to simply replace hashdeep with md5deep, and the whole process remains the same....

Contact Us