dcfldd
« Back to VersTracker
Description:
Enhanced version of dd for forensics and security
Type: Formula  |  Latest Version: 1.9.3@0  |  Tracked Since: Dec 17, 2025
Links: Homepage  |  formulae.brew.sh
Category: Security
Tags: forensics security imaging data-recovery cli
Install: brew install dcfldd
About:
dcfldd is a specialized disk imaging tool based on dd, designed for digital forensics and security professionals. It enhances the standard dd utility by adding features like hashing on the fly, pattern wiping, and detailed logging. These capabilities ensure data integrity and provide a robust audit trail during sensitive data acquisition and destruction tasks.
Key Features:
  • On-the-fly hashing (MD5, SHA1, etc.) of input and output data streams
  • Pattern wiping capability for secure data destruction
  • Multi-file output for splitting large images into manageable chunks
  • Detailed logging and verification for forensic integrity
  • Full compatibility with standard dd command-line options
Use Cases:
  • Creating forensically sound disk images with built-in integrity verification
  • Securely wiping sensitive data from storage media using custom patterns
  • Cloning large disks by splitting the output into smaller files for easier transfer
Alternatives:
  • dd – Standard Unix utility; lacks built-in hashing and logging features.
  • dc3dd – A similar fork with hashing features, but dcfldd is often preferred for its pattern wiping and logging.
License: GPL-2.0-or-later
Bottles available for: arm64_tahoe, arm64_sequoia, arm64_sonoma, arm64_ventura, sonoma, ventura, arm64_linux, x86_64_linux
Version History
Detected Version Rev Change Commit
Sep 15, 2025 5:21am 0 VERSION_BUMP 446388cd