Go Premium for a chance to win a PS4. Enter to Win

x

Digital Forensics

Digital forensics encompasses the recovery and investigation of material found in digital devices, often in relation to computer crime. Digital forensics investigations have a variety of applications. The most common is to support or refute a hypothesis before criminal or civil (as part of the electronic discovery process) courts. The technical aspect of an investigation is divided into several sub-branches, relating to the type of digital devices involved; computer forensics, network forensics, forensic data analysis and mobile device forensics. The typical forensic process encompasses the seizure, forensic imaging (acquisition) and analysis of digital media and the production of a report into collected evidence.

Share tech news, updates, or what's on your mind.

Sign up to Post

Hi everyone, Im learning and testing nfc cards.

I'm trying to know how works my university transport card, so I dumped it with 6 travels, then I waste one and dump with 5. The same with 4 travels.

I located the sector and the block of this sector that change, but I dont see the relation! Maybe you can help me

The block with 6 travels:
81 A8 1E 00   06 9E 1F 4E   DC 51 EF 30   02 60 20 C3

The block with 5 travels (I waste one to see this)
81 A8 1E 00   05 1E 1F 62   5C 12 B1 10   00 78 40 8C

And the block with 4 travels (wate another one):
81 A8 1E 00   04 1E 1F 62   5C C2 06 11   00 78 60 7C

Here are all to compare it better:
81 A8 1E 00   06 9E 1F 4E   DC 51 EF 30   02 60 20 C3
81 A8 1E 00   05 1E 1F 62   5C 12 B1 10   00 78 40 8C
81 A8 1E 00   04 1E 1F 62   5C C2 06 11   00 78 60 7C

Thanks a lot
0
WatchGuard Case Study: NCR
WatchGuard Case Study: NCR

With business operations for thousands of customers largely depending on the internal systems they support, NCR can’t afford to waste time or money on security products that are anything less than exceptional. That’s why they chose WatchGuard.

I'm writing a program that displays a time stamp or large number in a datagrideview. I'm loading the data using a SQLite engine.

In order to convert the number (time stamp) I need to take only the first 11 characters or numbers from the value.

Is their a way to loop through all cells in a column and trim it down to say 11 characters?
0
OSXPmem version 2.0.1 will successfully dump to AFF4. However, we need RAW. I found references to a -format flag in various blogs but "-format" is not evident in the OSXPmem man page and entering the flag throws errors. OSXPmem is not really designed to dump to RAW but supposedly it is possible. I just can't get it to work.

My AFF4 dumps are around 12 GB. I attempted to convert these AFF4 dumps to RAW using this command:

bash# osxpmem.app/osxpmem -e /dev/pmem -o Memory_Captures/mem.raw Memory_Captures/mem.aff4

Multiple different copies of my AFF4 memcaps converted to new files sized at exactly 2.06 GB and then stalled with “Imaging failed with the error: -8”. Googling this error yields nothing.

There's very little documentation on OSXPmem and virtually zero support. It looks like you can only use OSXPmem dumps with Rekall. Any suggestions appreciated.
0
We've downloaded Paladin 7.02 to a USB stick and we have successfully booted a MacBook Air.

Attached to the Air via USB is a Mac OS X drive in an enclosure called "Macintosh HD." Also attached is a Windows FAT32-formatted drive, "Image."

We need to E01 image Macintosh HD to the Image target drive.

We see that Paladin has provided 3 "Imaging Tools" that launch Linux terminal sessions. However, we can't find any documentation for how to actually render the E01 image. All suggestions welcome.
0
Hi, I have a 3.5 years old Nokia Lumia device that is about to die because it can barely charge.  I want to buy a new one but I have not because I wanted to extrar my text message threads.  They include videos and photos of my kids that I have sent over the years to family and friends and some of those videos and photos I lost when my computer hard drive died and I had not backed up for a while.  The only place where they still reside are in my very long, 3.5 year old message threads.  Plus, some relevant news like when my kid's first tooth came of, or funny things they said or did, I have always texted my family, and since I have no time for albums, the date and exact memory only reside in these text threads.  I have tried for ways to extract this with no luck.  The phone is the first Nokia Lumia 900 that came out, it has Windows 7.8 installed.  If someone can help me out before it dies on me, it would be great!  Thanks,

Marlene
0
I'm working on my master's dissertation in computer forensics and cyber security, and the topic is on bring-your-own-device (BYOD) acceptable use and security policy. There are many security implications that come along with BYOD. I am most interested in what organisations are doing today regarding BYOD?

If anyone has a few minutes and would like to participate in this anonymous BYOD survey, I would really appreciate the feedback.

The survey can be found here: https://www.surveymonkey.com/s/XPHCQSV 

Thank you!
0

Digital Forensics

Digital forensics encompasses the recovery and investigation of material found in digital devices, often in relation to computer crime. Digital forensics investigations have a variety of applications. The most common is to support or refute a hypothesis before criminal or civil (as part of the electronic discovery process) courts. The technical aspect of an investigation is divided into several sub-branches, relating to the type of digital devices involved; computer forensics, network forensics, forensic data analysis and mobile device forensics. The typical forensic process encompasses the seizure, forensic imaging (acquisition) and analysis of digital media and the production of a report into collected evidence.

Top Experts In
Digital Forensics
<
Monthly
>