Join Webinar On The New Version Of Belkasoft Evidence Center 2018

In a few days the new version of leading digital forensic product by Belkasoft will be released. Malware detection, Windows 10 memory reconstruction, crypto currencies analysis – learn what’s new in BEC 2018 by joining the webinar lead by Belkasoft’s CEO Yuri Gubanov.

https://belkasoft.com/webinar

Webinar in Spanish is available upon request. Continue reading Join Webinar On The New Version Of Belkasoft Evidence Center 2018

Posted in Uncategorized

AccessData Launches Coffee Break Webinar Series

Take a coffee break with AccessData and gain valuable knowledge in 30 minutes. The Coffee Breaks are a series of quick how-to webinars designed to provide you a brief tutorial on a variety of topics, including “How to use forensic tools to investigate a breach” and “How to use advanced searching techniques”.

Click the link to find out more http://bit.ly/2jq73VU and register to reserve your space! Continue reading AccessData Launches Coffee Break Webinar Series

Posted in Uncategorized

Forensic Focus Forum Round-Up

Welcome to this month’s round-up of recent posts to the Forensic Focus forums.

Forum members discuss how to identify bad sectors on a drive.

Have you had any experience with Ethereum forensics? Chime in on the forum.

Can you help ssstu to work out why LNK files aren’t showing up?

How would you extract data from this Galaxy S6? Share your thoughts on the forum.

Can you recommend any resources to help HuzyComp, a student of digital forensics?

Forum members talk about options for recovering data from a Motorola G4 after it’s been reset to factory settings.

Binarybod shares an open-source Windows link file examiner.

Where would you go to find deleted tweets from a specific Twitter user?

Forum members discuss the return of Forensic CaseNotes.

Do you have any advice for Bell_4, who is trying to create forensically sound images using only free software?

FameMoose is a student who’s looking to do a year in industry – share your advice on the forum. Continue reading Forensic Focus Forum Round-Up

Posted in Uncategorized

Passware Kit 2017v4: Supports DriveCrypt, Extracts 1Password/Mac Master Password

Passware Kit 2017 v4 recovers passwords for DriveCrypt and instantly extracts the master password for 1Password for Mac from memory images. This version improves GPU-accelerated password recovery (up to 25% faster for RAR, ZIP, Microsoft Office, and Apple Keychain files). It also introduces GPU-accelerated password recovery for PDFs (encryption revision 3).
What’s New in Passware Kit Forensic 2017 v4

– Password recovery for DriveCrypt
– Master password extraction for 1Password for Mac
– Increased performance of GPU-accelerated password recovery
– GPU-accelerated password recovery for PDF Continue reading Passware Kit 2017v4: Supports DriveCrypt, Extracts 1Password/Mac Master Password

Posted in Uncategorized

Review Of MacQuisition 2017 From BlackBag Technologies

Reviewed by David Flynn, Forensic Examiner for the Pitt County Sheriff’s Office, Greenville, North Carolina.

MacQuisition has been the go-to tool for acquisition of Apple computers for quite some time. With the most recent changes in the methods of acquiring data from Apple products, the MacQuisition software is now needed more than ever.

This tool has been time tested and remains at the top of the list for must have tools in the arena of computer forensics.

Read More Continue reading Review Of MacQuisition 2017 From BlackBag Technologies

Posted in Uncategorized

BlackBag Technologies Launch Forensic Software Educational Program

A partner recently commented to BlackBag Technologies that their digital forensic software ‘performed like a champ.’ The fact this partner, Bay Path University, is educating the next generation of digital forensic investigators, adds even more to the endorsement.

BlackBag Technologies fully appreciates the value Universities and Colleges of Higher and Further Education bring to the forensic community. To support this, BlackBag Technologies proudly announces the launch of their Educational Program, including multiple user licensing and instructor training. Continue reading BlackBag Technologies Launch Forensic Software Educational Program

Posted in Uncategorized

Cellular GPS Evidence: Waze + Cellebrite + CellHawk

by Patrick Siewert, Principal Consultant, Pro Digital Forensic Consulting

It’s becoming common knowledge that location evidence on cellular devices can provide a wealth of evidence in any number of civil, criminal and investigative matters. Law enforcement agencies use cellular location evidence from service providers to help place a criminal suspect at or near a crime scene in a given time frame. Search and rescue analysts can use cellular call detail records to help locate missing persons as well. And as we’ve detailed in previous articles, this type of evidence can be useful in any number of other matters, from divorce to alimony to fraud investigations and beyond.

So where does all of this evidence come from and how can we best utilize it? It can come from a variety of different places, but the two main areas are the mobile device itself and the records from the cellular provider.

Read More Continue reading Cellular GPS Evidence: Waze + Cellebrite + CellHawk

Posted in Uncategorized