Forensics article in KES

26 May 2006 | 16:34 | Articles, Forensics | No Comments

I published a new article about computer forensics in the German security journal KES (The Information Security Journal). The main focus is about the S-A-P investigation method (Secure Analyze and Present) and which tool function is really needed.
You can read more about the content on my German computer forensics blog.



Sleuthkit 2.04 and Autopsy 2.07 published

26 May 2006 | 12:57 | Forensics, Tools | No Comments

Autopsy and Sleuthkit Logo

New versions from Sleuthkit & Autopsy.

Brian Carrier published new versions from his outstandig open source forensics tools.

Sleuthkit 2.04 has the following bugfixes and new features (taken from changelog):

more…



Rootkits threat study

19 April 2006 | 11:49 | Security | No Comments

McAfee recently published a study about stealth malware – also known as Rootkits.

Some of the key findings are: more…



Forensics Wiki project

12 April 2006 | 8:02 | Forensics | No Comments

I recently discovered a interesting project by Simson Garfinkel and many contributors. The Forensics Wiki is devoted to information about digital forensics and electronic discovery. The content more…



windows memory analysis

6 April 2006 | 22:09 | Forensics, Live Response | No Comments

Andreas Schuster recently published on his blog two interesting articles about process memory reconstruction.
He describes how to more…



Funny picture from F-Secure about “current” Rootkit ideas

14 March 2006 | 18:45 | Humor, Security | No Comments

Funny picture from F-Secure about “current” Rootkit ideas. more…



My Speech about Computer Forensics at the CeBIT 2006

11 March 2006 | 15:41 | Events, Forensics, Speeches | 2 Comments
On Friday, March 10, 2006 I gave a speech on applied computer forensics at the Heise CeBIT-Forum 2006 “Security and IT-Law”.
My next speech on this topic will be on Monday, March 15, 2006 at the iX CeBIT-Forum 2006 “Software and Services” (3/B19).

more…



More news on the Greek Vodafone wiretapping issue

4 March 2006 | 19:49 | Security, Stories | No Comments

More details on the Greek wiretapping issue are emerging. Bruce Schneier wrote in his blog, that it turns out that the “malicious code” was actually code designed into the system and that the attackers managed to bypass the authorization mechanisms of the eavesdropping system, and activate the “lawful interception” module in the mobile network. They then more…



Pages:  1 2 ...11 12 13 14
TLA | Linklift | Teliad

Security Service London