Thanks __________________________________________________ Do You Yahoo!? Tired of spam? Yahoo! Mail has the best spam protection around http://mail.yahoo.com...
Hi to all : My name is Miguel Abreu from Dominican Republic. I work for the Cibercrime Unit of an investigative organization. I'm willing to grow in the...
Miguel, Welcome to the forum - good to have another person along. What areas do you specialise in? Cheers, Blare Sutton PPB Forensics ... for the Cibercrime...
Hi Miguel, good to be here and see that the forum is really active. I am a student, postgraduate in Forensic Computing, and after all these years of studying I...
Excuse my late response : Basicaly I have a degree in computers science , and Start working in this LEA, five years ago. All my life I have adored computers. I...
Hello Miguel, may I add you to Yahoo Messenger. Tom ... From: Miguel Abreu To: linux_forensics@yahoogroups.com Sent: Tuesday, June 07, 2005 1:30 PM Subject:...
Greetings, This is Huang from Boeing R&D in Seattle. Like to invite your submission to SADFE-2005 (The First International Workshop on Systematic Approaches to...
Memory analysis is one of the primary themes of the DFRWS2005. In an effort to motivate discourse, research and tool development in this area, the Organizing ...
On Windows XP, I am using dcfldd to image a floppy disk. I have dcfldd on a thumb drive. I open a command prompt and run dcfldd if=/dev/fd0 of=4th.dd bs=4096...
Selfhelp Telephone Numbers Listing This page shows a full list of Self-Help Telephone Numbers, sorted in alphabetical order by title. To access the full list...
... First, the hashwindow parameter controls how many bytes should be included in each piecewise hash. If you specify zero for this parameter, dcfldd will only...
Sorry for the slow response, I've been away from the computer this weekend :( This is indeed a bug. MD5 is supposed to be the default algorithm. It worked a...
This is why it is critical to understand what your software is doing. My teacher in forensics started us out doing manual information recovery with a disk...
Background: WebJob downloads a program over HTTP/HTTPS and executes it in one unified operation. The output, if any, may be directed to stdout/stderr or a Web...
Hello, I have written a research paper on Digital forensics of the physical memory. This is an introduction to new area of forensics. The objective of this...
MB
M_Burdach@...
Jun 15, 2005 12:54 pm
1588
Background: FTimes is a system baselining and evidence collection tool. The primary purpose of FTimes is to gather and/or develop information about specified...
I've been contacted by a defense attorney seeking expert services in a CP/KP case where sources for certain images on a computer can be determined, and it's...
Steve Fowler
sfowler@...
Jun 21, 2005 9:15 pm
1593
A bit late in this discussion, but I agree with gralfus. Nothing more than smoke and mirrors by defense. The breathalyzer is a scientific instrument that has...
I'm doing a data recovery on one of our lab's forensic boxes (it died) and all I want to recover is a series of directories. Is there a way to use dcfldd to...
That's what I'm doing, but we often work cases where we only want particular directories on servers -- and while that's an entirely valid idea (I've already...
... The Apollo 11 Lunar Module was subjected to some of the most rigorous quality-control methods ever developed or applied. Its instrumentation was tested...
Something does not have to be complicated to be valuable (i.e the code). The wheel is not complicated, but very valuable. Mixing the ingredients to make...
1. If the people in the court won't understand the code, how does producing the code benefit the defendant? 2. If they do manage to find someone who can...
... There is no intellectual property component to the wheel. ... It is fiction that the recipe is not known; the product is available for anyone to buy and...
... 1. If producing the code won't benefit the defendant, why not produce it? (And, as you know, there are plenty of people who can understand code.) ... 2....
... produce it? ... You knew the answer to this before you asked it. It is intellectual property. Revealing it makes it part of the record, and thus available ...
... That's their problem. And, one more time, the source can be placed under a protective order. You know, even in civil cases, I have to reveal my methods...
I have a DVD-R video that was burned using Nero, but which no drive I have can read. Programs like ISO Buster don't work with it because the drives won't read...