Pages:  1 2 3 4

New Helix version released

« 12 October 2006 | 15:09 | Forensics, Live Response, Tools | 1 Comment | 1,935 Views »

There is a new Helix (Incident Response & Computer Forensics Live CD based on Knoppix) version released. Version 1.8 has a now Andreas Schuster’s PTFinder included an will no longer change JFS information. You can donwload Helix here.
All new features at a glance:



New eventlog format in Vista

« 10 October 2006 | 17:34 | Forensics | No Comments | 1,383 Views »

Andreas Schuster wrote in his blog about the new event log format in Vista. He also has a good



FSP/FRU File Copy Client released

« 3 October 2006 | 14:02 | Forensics, Live Response, Tools | No Comments | 1,242 Views »

Harlan Carvey just released the FSP/FRU File Copy Client on SourceForge. The FCli is a GUI client that the investigator can use to select files to be copied from the suspect system, over to the FSP server.



Live Evidence Preview with Shadow 2

« 29 September 2006 | 18:10 | Forensics, Tools | No Comments | 1,789 Views »

For the German journal iX we tested recently the Shadow 2 box from VOOM Technologies



NIST Draft on Cell Phone Forensics

« 6 September 2006 | 7:20 | Forensics, Guidelines, Tools | No Comments | 1,687 Views »

NIST recently published a new draft on Cell Phone Forensics for public comment.
Download here.

time server



Computer Forensics Training in Berlin

« 2 September 2006 | 12:31 | Events, Forensics | 1 Comment | 1,640 Views »

My company the HiSolutions AG plans a hands on computer forensics training in Berlin. More information are available on http://computer-forensik.org in geman language.
Technical Computer Discussions on the Tech Army Blog Forum



The Sleutkit 2.06 and Autopsy 2.08

« 2 September 2006 | 11:57 | Forensics, Tools | 22 Comments | 2,802 Views »

Brain Carrier just released new version of his disk forensics tools. You can download The Sleuthkit 2.06 an Autopsy 2.08 from http://www.sleuthkit.org/.
Update:
There is a new windows version available.



Live View released

« 29 August 2006 | 13:48 | Forensics, Live Response, Tools | 2 Comments | 1,846 Views »

Brian Kaplan from Carnegie Mellon University just released a tool called Live View. With Live View you can convert a raw dd image or physical device to a VMware virtual machine.



Pages:  1 2 3 4
TLA | Linklift | Teliad