After introducing the first tool to crack Microsoft bitlocker encryption Passware company have created a new version that help user to have a full access to Mac FileVault disk encryption in a few minutes. Mac OS X has a strong utility integrated that any person can use to encrypt files with a strong encryption key [...]
Posts Tagged ‘Forensics’
OSForensics – Digital investigations faster
July 25th, 2011
Mourad Ben Lakhoua Every organization is faced by cyber-crime this makes it not surprising that utilities for investigating incidents are rapidly developing. These tools are focused on reviewing temporary file browser that can tell a lot about user activity, search hard disk for text contained inside the documents, open and read most popular email file formats and identify [...]
Evading Disk Investigation and Forensics
July 14th, 2011
Mourad Ben Lakhoua Encrypting files and data is a good way to assure their confidentiality, but this will not prevent a third party person from detecting the encrypted storage. Researcher at University of Southern California and Computer Sciences from NUST in Pakistan discovered an interesting way to secure data based on steganography techniques. Presented technique allow a person [...]
XPLICO Tool for Network Forensic
June 10th, 2011
Mourad Ben Lakhoua Xplico is a project released under GPL that decodes packet captures (PCAP), extracting the likes of email content (POP, IMAP, and SMTP protocols), all HTTP content, VoIP calls (SIP), IM chats, FTP, TFTP, and many others. It can be used on platforms with an embedded ARM core processor or typical multi-core servers, making optimal use [...]
USB Flash drive Resurrection
May 29th, 2011
Mourad Ben Lakhoua People are using removable media storage for different tasks. Step by step they are becoming a very important part of our daily life as the amount of storage capacity, and the critical nature of the data they contain increases. Sometimes USB drives do not allow us to add or remove files, or it just may [...]
CAINE 2.0 – NewLight is out!
September 23rd, 2010
Mourad Ben Lakhoua CAINE (Computer Aided INvestigative Environment) is an Italian GNU/Linux live distribution created as a project of Digital Forensics. CAINE is a Ubuntu based computer forensics live CD, mainly used to acquire data of a suspected criminal computer but also useful as a back up live CD. User friendly graphical interface.the distro offers a complete forensic [...]



Posted in
Tags:



