Archive for the 'Tools' Category

Pages:  1 2 3

The Sleuthkit 2.07

« 16 December 2006 | 20:08 | Forensics, Tools | No Comments | 1,460 Views »

Brian Carrierr released version 2.07 of his file system analysis tool The Sleuthkit: There are a lot of updates and bug fixes. The summarized list is below. The executive summary is that there are new flags for ils to find orphan files and new flags for dls to specify allocation status.There were a lot of [...]



New Helix version released

« 12 October 2006 | 15:09 | Forensics, Live Response, Tools | 1 Comment | 2,067 Views »

There is a new Helix (Incident Response & Computer Forensics Live CD based on Knoppix) version released. Version 1.8 has a now Andreas Schuster’s PTFinder included an will no longer change JFS information. You can donwload Helix here. All new features at a glance:



FSP/FRU File Copy Client released

« 3 October 2006 | 14:02 | Forensics, Live Response, Tools | No Comments | 1,277 Views »

Harlan Carvey just released the FSP/FRU File Copy Client on SourceForge. The FCli is a GUI client that the investigator can use to select files to be copied from the suspect system, over to the FSP server.



Live Evidence Preview with Shadow 2

« 29 September 2006 | 18:10 | Forensics, Tools | No Comments | 1,828 Views »

For the German journal iX we tested recently the Shadow 2 box from VOOM Technologies



NIST Draft on Cell Phone Forensics

« 6 September 2006 | 7:20 | Forensics, Guidelines, Tools | No Comments | 1,718 Views »

NIST recently published a new draft on Cell Phone Forensics for public comment. Download here.



The Sleutkit 2.06 and Autopsy 2.08

« 2 September 2006 | 11:57 | Forensics, Tools | 22 Comments | 3,560 Views »

Brain Carrier just released new version of his disk forensics tools. You can download The Sleuthkit 2.06 an Autopsy 2.08 from http://www.sleuthkit.org/. Update: There is a new windows version available.



Live View released

« 29 August 2006 | 13:48 | Forensics, Live Response, Tools | 2 Comments | 1,947 Views »

Brian Kaplan from Carnegie Mellon University just released a tool called Live View. With Live View you can convert a raw dd image or physical device to a VMware virtual machine.



The Sleuth Kit 2.05 released

« 30 July 2006 | 21:23 | Forensics, Tools | No Comments | 1,654 Views »

Brian Carrier just released a new version of his computer forensics tool kit *). Changes on The Sleuth Kit (TSK):



Pages:  1 2 3

Security Service London