导航

随笔分类 -  Forensic News

摘要:近日,Guidance发布了计算机取证软件EnCase的v7.04.01版本,包括英文及中文语言,各位使用EnCase Forensic的用户可以及时进行更新。 阅读全文

posted @ 2012-07-09 22:31 YiDiscovery 阅读(639) 评论(0) 推荐(0) 编辑

摘要:Forensic Computer Examiner Quick Reference Guide 是一款在iOS平台使用的计算机取证调查员快速参考手册,包含了计算机取证常用的表格和参考资料。 今日,Forensic Computer Examiner Quick Reference Guide在苹果App Store发布更新,新版本号为2.0 跳转至App Store: htt... 阅读全文

posted @ 2012-05-23 14:49 YiDiscovery 阅读(436) 评论(0) 推荐(0) 编辑

摘要:俄罗斯著名密码破解产品厂商Passware 近日发布Passware Kit最新版11.7主要更新:支持对Microsoft Office 2007-2010文档密码的快速破解 (内存分析)PGP WDE(全盘加密)的快速破解(内存分析)支持对于Apple DMG磁盘镜像的密码恢复与EnCase软件集成原文跳转:http://www.lostpassword.com/news/pnl63.htm 阅读全文

posted @ 2012-05-22 17:50 YiDiscovery 阅读(976) 评论(0) 推荐(1) 编辑

摘要:著名MAC OS取证产品厂商MAC Forensics Lab近日发布Mac Lock Pick 3.0版本。详情跳转:http://www.macforensicslab.com/ProductsAndServices/index.php?main_page=product_info&cPath=12&products_id=2 阅读全文

posted @ 2012-05-22 16:09 YiDiscovery 阅读(545) 评论(0) 推荐(0) 编辑

摘要:Oxygen Forensic Suite 2012 v.4.3 released Oxygen Software has updated Oxygen Forensic Suite 2012, the company’s flagship mobile forensic tool, offering investigators a greatly improved experience wit... 阅读全文

posted @ 2012-05-17 17:48 YiDiscovery 阅读(799) 评论(0) 推荐(0) 编辑

摘要:Paraben's Project-A-PhoneTM ICD-8000 is the latest version of its cell phone screen capture device that allows you to take pictures or videos of the screen of almost any cell phone and display it right on your computer. This model replaces the IDC-5200, the most popular image capturing device am 阅读全文

posted @ 2012-05-16 18:03 YiDiscovery 阅读(311) 评论(0) 推荐(0) 编辑

摘要:每个人都有不能说的秘密,很多人都会采用数据擦除软件清除数据,而日本“Platform of Japan”公司的“Data Killer” 系列产品,利用强磁场瞬间清除硬盘数据,最多支持14块硬盘,或整台笔记本电脑。For when the police are knocking at your door and you have piles and piles of hard drives filled with stolen credit card info, CIA secrets, duck porn or pirated movies (take your pick) there co 阅读全文

posted @ 2012-05-16 17:54 YiDiscovery 阅读(758) 评论(0) 推荐(0) 编辑

摘要:AIS, Inc. announces the availability of their newest software product, MacResponse LE™. MacResponse LE is designed to provide law enforcement with critical capabilities needed to reliably collect and analyze data from live computer systems running various versions of Mac OS X.MacResponse LE was deve 阅读全文

posted @ 2012-05-16 17:43 YiDiscovery 阅读(301) 评论(0) 推荐(0) 编辑

摘要:Elcomsoft近日发布Elcomsoft Phone Password Breaker 1.84.1338。新版本支持获取iCloud上的iOS备份取证。 阅读全文

posted @ 2012-05-15 15:59 YiDiscovery 阅读(1016) 评论(0) 推荐(1) 编辑

摘要:CelleBrite于近日正式发布手机取证设备UFED的1.1.9.7固件以及Physical Analyzer 3.0版本,主要更新如下:支持三星Galaxy SII家族手机以及Galaxy Note的物理获取,支持绕过锁屏密码或破解密码。更新对部分摩托罗拉Android手机的物理获取支持和文件系统获取。支持Android 3.X (Honeycomb)设备,支持Android4.0 (Ice Cream Sandwich),无需手机具备root权限。针对黑莓BBOS4-6,已知密码,可对物理获取的内容进行实时解密。支持iOS 5.1的物理获取和文件系统获取、实时解密和密码恢复(不含iPho 阅读全文

posted @ 2012-05-15 00:02 YiDiscovery 阅读(768) 评论(0) 推荐(0) 编辑

摘要:计算机取证设备制造商Logicube公司近日发布公告,正式宣布即将推出针对山寨手机取证的支持。即将整合山寨手机取证功能的是该公司去年年底发布的新款手机取证设备CellXtract,本次整合采用了eDEC公司的Tarantula设备(即北京瑞源文德公司“狼蛛”手机取证设备),该设备能够有效获取采用联发科(MTK)、展讯(Spreadtrum)、英飞凌等厂商整合式移动终端方案的手机,当然,这类手机绝大多数就是我们所说的“山寨机”。至此,包括CelleBrite、Logicube在内的传统取证产品厂商均参与到了针对“山寨机”取证的竞争之中,料想在今后的1-2年内,国内的手机取证市场竞争必更加白热化。 阅读全文

posted @ 2012-05-13 02:51 YiDiscovery 阅读(407) 评论(0) 推荐(0) 编辑

摘要:GSI于May 9,2012发布EnCase v7.04版本增加“备份”面板,可以对每个Case的具体Backup进行管理完善备份功能,支持任务备份、自动备份等多种方式File Carver优化Report TemplatesDisplay Additional FieldsiOS 5.0 and iOS 5.1 iPhone and iPad Device SupportInternet Explorer 9 History Updates SupportFirefox 8 History Updates SupportEvidence Processor 性能优化,主要针对keyword 阅读全文

posted @ 2012-05-11 09:48 YiDiscovery 阅读(664) 评论(0) 推荐(0) 编辑

摘要:原文跳转:http://www.computerworld.com.au/article/423280/ibm_melds_crime-fighting_big_data_analytics_one_security_package/?fp=4&fpid=18部分摘录:According to anIDG New Service reportat the time of the buy, i2 had more than 4,500 customers across 150 countries. The company said that 12 of the top 20 retail 阅读全文

posted @ 2012-05-03 00:28 YiDiscovery 阅读(262) 评论(0) 推荐(0) 编辑

摘要:A new version of SC Suite is available, version 4.7 now includes more tools to analyse and extract information from a variety of file types and utilities to assist in everyday tasks. Continuing user feedback has resulted in the development of 74 tools packaged as a single suite. What's new? Zip 阅读全文

posted @ 2012-05-03 00:09 YiDiscovery 阅读(175) 评论(0) 推荐(0) 编辑

摘要:FTK OVERVIEWBROCHURES FTK Data Sheet Cerberus Data Sheet Visualization Data Sheet MoreWHITE PAPERS LEGAL JOURNAL: The Rules of Evidence and AccessData Technology The Importance of Memory Search and Analysis MorePRODUCT WEBINARS Cerberus: Malware Analysis & Triage FTK: Sing... 阅读全文

posted @ 2012-04-24 14:50 YiDiscovery 阅读(579) 评论(0) 推荐(0) 编辑

摘要:MPE+ MOBILE FORENSICS SOFTWARE SUPPORTS 3500+ PHONES, INCLUDING IPHONE®, IPAD®, ANDROID™ AND BLACKBERRY® DEVICES WATCH DEMO NOW > MPE+ is a stand-alone mobile forensics software solution, which is also available on a preconfigured touch screen tablet for on-scene mobile forensics t 阅读全文

posted @ 2012-04-24 14:44 YiDiscovery 阅读(1138) 评论(0) 推荐(0) 编辑

摘要:上周赴土耳其参加Euroforensics 2012, 3rd International Forensic Sciences Exhibition and Conference,偶遇Tableau代理商mh的展位,其展示的Tableau TD3复制机是该公司最新产品,目前仅供美国FBI使用,预计今年年内能够推向市场。 TD3采用模块化设计,可以使用各种接口模块接入Source和Target,同时目标支持千兆以太存储以及TMSS存储设备。 ©Yi Sun 2012 阅读全文

posted @ 2012-04-07 22:16 YiDiscovery 阅读(451) 评论(0) 推荐(0) 编辑

摘要:http://forensic.belkasoft.com/en/bec/en/evidence_center.asp 阅读全文

posted @ 2012-02-03 13:51 YiDiscovery 阅读(551) 评论(0) 推荐(0) 编辑

摘要:GSI近期更新v7的速度颇快,让人觉得是因为为了推广新版本v7而没有注重程序功能性和稳定性以及用户体验,频繁地修复Bug和改进功能,10月18日发布v7.0210月19日发布v7.02.0110月29日发布v7.02.02 Software UpdateAn Update to EnCase®Forensic Version 7is Now AvailableGuidance Software is pleased to announce EnCase Forensic Version 7.02.02 is now available. We are constantly worki 阅读全文

posted @ 2011-10-31 17:18 YiDiscovery 阅读(602) 评论(0) 推荐(0) 编辑

摘要:6.19版本现在包含x86和x64的中文和英文版本。新功能:支持Ex01和Lx01证据镜像文件支持McAfee Endpoint Encryption 6.0改进和修复:Acquisition, Add Device, Preview, File System 38785: Unable to acquire a device in acquisition mode with Tableau TD8.EnScript 39163: Running Windows Initialize Case on a Windows 7 machine with a Windows Vista image 阅读全文

posted @ 2011-08-19 01:47 YiDiscovery 阅读(469) 评论(0) 推荐(0) 编辑