I published a new article about computer forensics in the German security journal KES (The Information Security Journal). The main focus is about the S-A-P investigation method (Secure Analyze and Present) and which tool function is really needed.
You can read more about the content on my German computer forensics blog.
Forensics article in KES
26 May 2006 |
16:34 |
Articles, Forensics |
No Comments
Sleuthkit 2.04 and Autopsy 2.07 published
26 May 2006 |
12:57 |
Forensics, Tools |
No Comments

New versions from Sleuthkit & Autopsy.
Brian Carrier published new versions from his outstandig open source forensics tools.
Sleuthkit 2.04 has the following bugfixes and new features (taken from changelog):

New versions from Sleuthkit & Autopsy.
Brian Carrier published new versions from his outstandig open source forensics tools.
Sleuthkit 2.04 has the following bugfixes and new features (taken from changelog):
Rootkits threat study
19 April 2006 |
11:49 |
Security |
No Comments
McAfee recently published a study about stealth malware – also known as Rootkits.
Some of the key findings are: more…
McAfee recently published a study about stealth malware – also known as Rootkits.
Some of the key findings are: more…
Forensics Wiki project
12 April 2006 |
8:02 |
Forensics |
No Comments
I recently discovered a interesting project by Simson Garfinkel and many contributors. The Forensics Wiki is devoted to information about digital forensics and electronic discovery. The content more…
I recently discovered a interesting project by Simson Garfinkel and many contributors. The Forensics Wiki is devoted to information about digital forensics and electronic discovery. The content more…
windows memory analysis 6 April 2006 | 22:09 | Forensics, Live Response | No Comments
Funny picture from F-Secure about “current” Rootkit ideas
14 March 2006 |
18:45 |
Humor, Security |
No Comments
Funny picture from F-Secure about “current” Rootkit ideas. more…
Funny picture from F-Secure about “current” Rootkit ideas. more…
My Speech about Computer Forensics at the CeBIT 2006
11 March 2006 |
15:41 |
Events, Forensics, Speeches |
2 Comments

On Friday, March 10, 2006 I gave a speech on applied computer forensics at the Heise CeBIT-Forum 2006 “Security and IT-Law”.
My next speech on this topic will be on Monday, March 15, 2006 at the iX CeBIT-Forum 2006 “Software and Services” (3/B19).

![]() |
On Friday, March 10, 2006 I gave a speech on applied computer forensics at the Heise CeBIT-Forum 2006 “Security and IT-Law”. |
| My next speech on this topic will be on Monday, March 15, 2006 at the iX CeBIT-Forum 2006 “Software and Services” (3/B19). | ![]() |
More news on the Greek Vodafone wiretapping issue
4 March 2006 |
19:49 |
Security, Stories |
No Comments
More details on the Greek wiretapping issue are emerging. Bruce Schneier wrote in his blog, that it turns out that the “malicious code” was actually code designed into the system and that the attackers managed to bypass the authorization mechanisms of the eavesdropping system, and activate the “lawful interception” module in the mobile network. They then more…
More details on the Greek wiretapping issue are emerging. Bruce Schneier wrote in his blog, that it turns out that the “malicious code” was actually code designed into the system and that the attackers managed to bypass the authorization mechanisms of the eavesdropping system, and activate the “lawful interception” module in the mobile network. They then more…
