We believe that having the right tools to do the job is critical for forensic investigators. That’s why we have created a multi-purpose, all inclusive, investigation environment starting with online investigations (OSINT, social media, domain recon, and dark web) to offline Digital Forensics Incident Response to Malware Analysis and more. This is an ideal environment for both training and real world investigations.

What Makes this different than the hundreds of other options out there? Well... CSI Linux was developed by Computer Forensics, Incident Response, and Competitive Intelligence professionals to meet the current needs for their clients, government agencies, and the industry.

CSI Linux is availible in both a Virtual Machine Appliance and Bootable distro to use as a daily driver. For those that are familar with the previous versions, in 2020.3, we have merged the CSI Linux Analystand the CSI Linux Gateway to give you the most seemless and easiest way to investigate the Surface and Dark web. Most of our focus is on Tor, but we also support I2P, Freenet, and Zeronet. CSI Linux SIEM contains the tools you need for identifying local network threats.

To add a plethora of capability to your investigation arsenal, download the CSI Linux Investigator today!

CSI Linux 2020.3 has been released! Read the Features



If you downloaded the torrent file for the Virtual appliance and it is stuck at 99%, please redownload the torrent file from the download page. The video was not uploading. The new torrent should see the ova file and finish the download for the hash file.