导航

05 2012 档案

摘要:Forensic Computer Examiner Quick Reference Guide 是一款在iOS平台使用的计算机取证调查员快速参考手册,包含了计算机取证常用的表格和参考资料。 今日,Forensic Computer Examiner Quick Reference Guide在苹果App Store发布更新,新版本号为2.0 跳转至App Store: htt... 阅读全文

posted @ 2012-05-23 14:49 YiDiscovery 阅读(450) 评论(0) 推荐(0)

摘要:俄罗斯著名密码破解产品厂商Passware 近日发布Passware Kit最新版11.7主要更新:支持对Microsoft Office 2007-2010文档密码的快速破解 (内存分析)PGP WDE(全盘加密)的快速破解(内存分析)支持对于Apple DMG磁盘镜像的密码恢复与EnCase软件集成原文跳转:http://www.lostpassword.com/news/pnl63.htm 阅读全文

posted @ 2012-05-22 17:50 YiDiscovery 阅读(1006) 评论(0) 推荐(1)

摘要:著名MAC OS取证产品厂商MAC Forensics Lab近日发布Mac Lock Pick 3.0版本。详情跳转:http://www.macforensicslab.com/ProductsAndServices/index.php?main_page=product_info&cPath=12&products_id=2 阅读全文

posted @ 2012-05-22 16:09 YiDiscovery 阅读(558) 评论(0) 推荐(0)

摘要:Oxygen Forensic Suite 2012 v.4.3 released Oxygen Software has updated Oxygen Forensic Suite 2012, the company’s flagship mobile forensic tool, offering investigators a greatly improved experience wit... 阅读全文

posted @ 2012-05-17 17:48 YiDiscovery 阅读(1185) 评论(0) 推荐(0)

摘要:WhatsApp ForensicsThose who follow this blog may have noticed few months ago a post that introduced WhatsApp Xtract: this script was able to display in an HTML document all the WhatsApp messages extracted from an iPhone. And those who follow the xda developers forum may have recently noticed a threa 阅读全文

posted @ 2012-05-16 19:18 YiDiscovery 阅读(1057) 评论(0) 推荐(0)

摘要:本文原作者Jason Hale,所有权利归原作者所有。Windows 8 TypedURLsTimeAmanda Thomson posted a Windows 8 Forensic Guide last month that covers a variety of topics examiners can expect to encounter with this new operating system on the horizon. One of the new items in Windows 8 - existing at least in the Consumer Preview 阅读全文

posted @ 2012-05-16 19:15 YiDiscovery 阅读(429) 评论(0) 推荐(0)

摘要:Paraben's Project-A-PhoneTM ICD-8000 is the latest version of its cell phone screen capture device that allows you to take pictures or videos of the screen of almost any cell phone and display it right on your computer. This model replaces the IDC-5200, the most popular image capturing device am 阅读全文

posted @ 2012-05-16 18:03 YiDiscovery 阅读(336) 评论(0) 推荐(0)

摘要:每个人都有不能说的秘密,很多人都会采用数据擦除软件清除数据,而日本“Platform of Japan”公司的“Data Killer” 系列产品,利用强磁场瞬间清除硬盘数据,最多支持14块硬盘,或整台笔记本电脑。For when the police are knocking at your door and you have piles and piles of hard drives filled with stolen credit card info, CIA secrets, duck porn or pirated movies (take your pick) there co 阅读全文

posted @ 2012-05-16 17:54 YiDiscovery 阅读(783) 评论(0) 推荐(0)

摘要:AIS, Inc. announces the availability of their newest software product, MacResponse LE™. MacResponse LE is designed to provide law enforcement with critical capabilities needed to reliably collect and analyze data from live computer systems running various versions of Mac OS X.MacResponse LE was deve 阅读全文

posted @ 2012-05-16 17:43 YiDiscovery 阅读(321) 评论(0) 推荐(0)

摘要:Elcomsoft近日发布Elcomsoft Phone Password Breaker 1.84.1338。新版本支持获取iCloud上的iOS备份取证。 阅读全文

posted @ 2012-05-15 15:59 YiDiscovery 阅读(1035) 评论(0) 推荐(1)

摘要:CelleBrite于近日正式发布手机取证设备UFED的1.1.9.7固件以及Physical Analyzer 3.0版本,主要更新如下:支持三星Galaxy SII家族手机以及Galaxy Note的物理获取,支持绕过锁屏密码或破解密码。更新对部分摩托罗拉Android手机的物理获取支持和文件系统获取。支持Android 3.X (Honeycomb)设备,支持Android4.0 (Ice Cream Sandwich),无需手机具备root权限。针对黑莓BBOS4-6,已知密码,可对物理获取的内容进行实时解密。支持iOS 5.1的物理获取和文件系统获取、实时解密和密码恢复(不含iPho 阅读全文

posted @ 2012-05-15 00:02 YiDiscovery 阅读(869) 评论(0) 推荐(0)

摘要:计算机取证设备制造商Logicube公司近日发布公告,正式宣布即将推出针对山寨手机取证的支持。即将整合山寨手机取证功能的是该公司去年年底发布的新款手机取证设备CellXtract,本次整合采用了eDEC公司的Tarantula设备(即北京瑞源文德公司“狼蛛”手机取证设备),该设备能够有效获取采用联发科(MTK)、展讯(Spreadtrum)、英飞凌等厂商整合式移动终端方案的手机,当然,这类手机绝大多数就是我们所说的“山寨机”。至此,包括CelleBrite、Logicube在内的传统取证产品厂商均参与到了针对“山寨机”取证的竞争之中,料想在今后的1-2年内,国内的手机取证市场竞争必更加白热化。 阅读全文

posted @ 2012-05-13 02:51 YiDiscovery 阅读(443) 评论(0) 推荐(0)

摘要:GSI于May 9,2012发布EnCase v7.04版本增加“备份”面板,可以对每个Case的具体Backup进行管理完善备份功能,支持任务备份、自动备份等多种方式File Carver优化Report TemplatesDisplay Additional FieldsiOS 5.0 and iOS 5.1 iPhone and iPad Device SupportInternet Explorer 9 History Updates SupportFirefox 8 History Updates SupportEvidence Processor 性能优化,主要针对keyword 阅读全文

posted @ 2012-05-11 09:48 YiDiscovery 阅读(680) 评论(0) 推荐(0)

摘要:在接下来的一段时间,我将在博客上陆续摘录连载《智能手机取证》一书的部分章节,该书由我与中国刑警学院计算机犯罪侦查系主任秦玉海教授共同编写,将于年内出版面世。 阅读全文

posted @ 2012-05-07 15:09 YiDiscovery 阅读(1265) 评论(3) 推荐(0)

摘要:原文自http://www.cnbeta.com/articles/185511.htm所有权利归原作者所有如有侵犯权利,请联系博主删除。译自Ars Technica当一名基地组织嫌犯在去年五月在柏林被捕的时候, 警方发现他随身携带着一张存储卡, 而其中的文件是隐藏的. 不过据德国 Zeit 杂志报道, 德国联邦刑警的计算机刑侦专家后来成功的解开了存储卡上的隐藏内容: 表面上来看, 卡上似乎只存有一个文件名为 "牛逼" (KickAss) 的色情视频. 但警方随后在该视频中发现了 141 个文本文档, 据官方发言人表示这些文档中包括大量基地组织的行动报告和未来行动规划.那么 阅读全文

posted @ 2012-05-04 00:35 YiDiscovery 阅读(1433) 评论(0) 推荐(0)

摘要:原文跳转:http://www.computerworld.com.au/article/423280/ibm_melds_crime-fighting_big_data_analytics_one_security_package/?fp=4&fpid=18部分摘录:According to anIDG New Service reportat the time of the buy, i2 had more than 4,500 customers across 150 countries. The company said that 12 of the top 20 retail 阅读全文

posted @ 2012-05-03 00:28 YiDiscovery 阅读(271) 评论(0) 推荐(0)

摘要:A new version of SC Suite is available, version 4.7 now includes more tools to analyse and extract information from a variety of file types and utilities to assist in everyday tasks. Continuing user feedback has resulted in the development of 74 tools packaged as a single suite. What's new? Zip 阅读全文

posted @ 2012-05-03 00:09 YiDiscovery 阅读(191) 评论(0) 推荐(0)

摘要:原文自http://network.pconline.com.cn/netsafe/1204/2749924_all.html所有权利归原作者所有如有侵犯权利,请联系博主删除。——————————————————————————————————————————————————————————————————————最近炒的沸沸扬扬的深圳某达等诸多品牌无线路由器PIN码算法被破译事件,可谓影响深远。网友只需要简单的通过一些WIFI无线信号嗅探软件就可以轻松的破译开启了WPS功能的无线路由器密码。通过PIN码连接进入别人的无线网络中蹭网。具体操作我们稍作演示扫瞄附近的无线信号 我们随便扫瞄了办公. 阅读全文

posted @ 2012-05-02 10:03 YiDiscovery 阅读(3132) 评论(0) 推荐(0)