dissect.util
A Dissect module implementing various utility functions for the other Dissect modules
Decision gist · record as of 2026-08-14
Yes, if you are using other Dissect modules—it is a required or expected dependency. Install it as part of the Dissect framework setup. If you need standalone LZ4/LZO decompression without the Dissect ecosystem, evaluate dedicated compression libraries instead.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires Python 3.10.0 or later; native Rust implementations are optional and automatically fall back to pure Python if unavailable.
- Low friction installation with pure Python fallback; actively maintained with recent commits and no runtime dependencies to manage.
License · maintenance · safety
Apache-2.0 (permissive) — Apache License 2.0 (permissive) allows use in commercial and proprietary projects with minimal restrictions.
last release 2026-02-24 (171 days) · last repo commit 2026-08-05 · 4 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 188,441 downloads/mo, #9,945 on PyPI
Alternatives
Verify before relying
pip install dissect.util
from dissect.util.compression import lz4
decompressed = lz4.decompress(compressed_data)- Whether the package's decompression functions are exposed as public APIs or are internal utilities for other Dissect modules.
- Performance characteristics of the pure Python fallback versus native implementations for typical workloads.
What it is and what it does
dissect.util is a utility module within the Dissect forensic framework that provides common functions and decompression algorithms used by other Dissect components. It includes implementations of LZ4 and LZO decompression with optional native Rust bindings for improved performance; when pre-built wheels are unavailable, the package automatically falls back to pure Python implementations.
The package is designed as a dependency for other Dissect modules rather than as a standalone tool. It requires Python 3.10.0 or later and has no external runtime dependencies, making it straightforward to install and integrate into forensic analysis workflows.
Use it for
- Decompressing LZ4 or LZO-compressed data within Dissect forensic analysis pipelines.
- Providing shared utility functions to other Dissect framework modules.
- Building forensic analysis tools that depend on the Dissect ecosystem.
- Analyzing compressed artifacts in digital investigations where Dissect modules are the primary analysis framework.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes, if you are using other Dissect modules—it is a required or expected dependency.
Install it as part of the Dissect framework setup. If you need standalone LZ4/LZO decompression without the Dissect ecosystem, evaluate dedicated compression libraries instead.
Install
dissect-util on PyPI
Before you install
Low friction installation with pure Python fallback; actively maintained with recent commits and no runtime dependencies to manage.
Requires Python 3.10.0 or later; native Rust implementations are optional and automatically fall back to pure Python if unavailable.
License in practice
Apache License 2.0 (permissive) allows use in commercial and proprietary projects with minimal restrictions.
Quickstart
pip install dissect.util
from dissect.util.compression import lz4
decompressed = lz4.decompress(compressed_data)
Verify before relying
- Whether the package's decompression functions are exposed as public APIs or are internal utilities for other Dissect modules.
- Performance characteristics of the pure Python fallback versus native implementations for typical workloads.
Package facts
| License | Apache-2.0 permissive |
| Python support | Supports the current Python release >=3.10.0 |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | None |
| Maintenance | Actively maintained 171 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 188,441 / month, #9,945 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 5 - Production/StableEnvironment :: ConsoleIntended Audience :: DevelopersIntended Audience :: Information TechnologyOperating System :: OS IndependentProgramming Language :: Python :: 3Topic :: Internet :: Log AnalysisTopic :: Scientific/Engineering :: Information AnalysisTopic :: SecurityTopic :: Utilities |
Evidence: dissect_util-3.24-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “dissect framework utilities”
- dissect.utilProvides utility functions and decompression algorithms (LZ4, LZO)…
- dissect.hypervisorParses hypervisor disk, backup, and configuration files from various…
- acquireAcquire gathers forensic artifacts from disk images or live systems…
Give your agent the search over MCP, or paste the wish link into any chat.
More Utilities packages
Converts domain names between Unicode and ASCII-compatible encoding (Punycode) according to IDNA 2008 and Unicode Technical Standard 46, with security validation and broader script coverage than the standard library.
Install it if you work with internationalized domain names, need to validate domains, or use HTTP clients that depend on it transitively.
Detects and normalizes text encoding from unknown or ambiguous sources, supporting all IANA character sets that Python's core library provides codecs for, with the ability to register custom codecs.
Setuptools is a Python build backend and package management tool that handles building, distributing, and installing Python packages, including support for C/C++ extension modules.
Pluggy provides a plugin system that lets you define hook specifications and register implementations to be called in sequence, enabling extensible Python applications without tight coupling.
Install it if you're building an extensible application or framework.
Pygments is a syntax highlighter that colorizes source code and text in over 500 languages and formats, outputting to HTML, LaTeX, RTF, SVG, images, or ANSI terminal sequences.
Install it if you need to display or transform source code.
Six provides utility functions to write Python code that runs on both Python 2.7 and Python 3.3+, smoothing over language differences between the two versions.
See also dissect.hypervisor · dissect.ntfs · dissect.target · dissect.volume · acquire · lzallright · cramjam · dissect.cstruct · python-neo-lzf · ncompress