Acquiring Memor(ies) from 2014

2014 is extremely volatile. Any minute now, it will be gone. Thus, we wanted to take a minute and preserve some of the more exciting memories. Specifically, we wanted to summarize how the memory forensics field and Volatility community has progressed t… Continue reading Acquiring Memor(ies) from 2014

Volatility 2.4 at Blackhat Arsenal – Defeating Truecrypt Disk Encryption

This video shows how to use Volatility’s new Truecrypt plugins to defeat disk encryption on suspect computers running 64-bit Windows 8 and server 2012.

The video is narrated by Apple’s text to speech and you can find the actual text on the Youtube … Continue reading Volatility 2.4 at Blackhat Arsenal – Defeating Truecrypt Disk Encryption