Archive for the 'Forensics' Category

Pages:  1 2 ...4 5 6 7

The Sleuth Kit 2.05 released

« 30 July 2006 | 21:23 | Forensics, Tools | No Comments | 1,636 Views »

Brian Carrier just released a new version of his computer forensics tool kit *).
Changes on The Sleuth Kit (TSK):



Forensic analysis of the stolen laptop

« 10 July 2006 | 16:09 | Forensics, Stories | No Comments | 1,721 Views »

The Internet Security Zone Blog published an interesting article about the FBI forensic analysis of the stolen veteran’s administration laptop that



Cell Phone Forensics Tools

« 7 July 2006 | 11:33 | Forensics, Mobile Devices, Tools | No Comments | 3,237 Views »

Cell Phone Forensics Tools
Last year the NIST published an interesting paper about Cell Phone Forensics Tools. They tested a couple of this tools and made some interesting remarks on working with them.



Forensic memory dumping issues

« 6 June 2006 | 11:44 | Forensics, Live Response | No Comments | 2,104 Views »

Arne Vidstrom from ntsecurity.nu wrote an interesting paper about problems with forensic RAM dumps from Windows XP. His summary on this topic



Forensics article in KES

« 26 May 2006 | 16:34 | Articles, Forensics | No Comments | 2,126 Views »

I published a new article about computer forensics in the German security journal KES (The Information Security Journal). The main focus is about the S-A-P investigation method (Secure Analyze and Present) and which tool function is really needed.
You can read more about the content on my German computer forensics blog.



Sleuthkit 2.04 and Autopsy 2.07 published

« 26 May 2006 | 12:57 | Forensics, Tools | No Comments | 1,835 Views »

New versions from Sleuthkit & Autopsy.
Brian Carrier published new versions from his outstandig open source forensics tools.
Sleuthkit 2.04 has the following bugfixes and new features (taken from changelog):



Forensics Wiki project

« 12 April 2006 | 8:02 | Forensics | No Comments | 2,098 Views »

I recently discovered a interesting project by Simson Garfinkel and many contributors. The Forensics Wiki is devoted to information about digital forensics and electronic discovery. The content



windows memory analysis

« 6 April 2006 | 22:09 | Forensics, Live Response | No Comments | 2,553 Views »

Andreas Schuster recently published on his blog two interesting articles about process memory reconstruction.
He describes how to



Pages:  1 2 ...4 5 6 7
TLA | Linklift | Teliad