Release 2022-10-23
Jump to navigation
Jump to search
Truxton 4.2.2
Scrap this and pickup from Oct 13, 2022
Improvements
- Python APIs that require a UUID can now accept a UUID or string object
- New C APIs:
- Enumeration
- ETL Routing
- Blackbox Recorder
- Time string parser
- truxton_communication_add_participant()
- Support for adding investigator notes
- New Python APIs
- carvefile()
- parsetime()
- addparticipant()
- New note() type for adding investigator notes
- Triage loads can now use regular expressions to identify desirable files. These are stored in the
[TriageFiles]table in the database. - New TriageFiles tool that helps you determine the names of useful files
- Identical entries in a Zip archive are now ignored
- If a drive fills when loading, Truxton will now delete depot files that have been marked for deletion and continue processing.
- Better deduplication of MIME messages
- Better deduplication of geographic locations
- MobileCards in Cellebrite Reports are now handled
Bug Fixes
- Message Priorities weren't being handled properly
- EXIF parsing didn't handle unsorted fields (against the standard)
- Never eliminate by file type now works
- All tables are now cleaned during maintenance
- Archive Expander's depots are now properly cleaned
- Better support for spanned Zip files
- Bad SQL when expanding Android contacts
New Types
- 21 new file types
- Vehicle media type
- Device ID artifact type
- Member Of relationship type
- Associated With relationship type
- In Contact With relationship type
- Chat URL type