The Electronic Evidence Information Center

Home


Digital Forensics BIBLIO


What's New


ALL
Other Resources


Digital Forensic Books


OS Specific Articles


Links to Links


Reciprocal Links


About This Site

  WHAT'S NEW?

This space is used to maintain a record of the latest additions to the site.


Past Update Pages

[2003 - 2004]

January 2005 Februray 2005 March 2005
April 2005 May 2005 June 2005
July 2005 August 2005  


Within the Bibliography section

Barbara, John J.

Bejtlich, Richard

Bogen A. Chris & Dr. David A. Dampier

Bradley, Tony

Buchholz, Florian & Courtney Falk

Burke, Paul & Chris Marberry

  • An Introduction to Linux as a Tool for Digital Investigation and Analysis

    • Part 1 [PDF Presentation] July 2005
    • Part 2 [PDF Presentation] July 2005

Cannon, Richard

Carrier, Brian D. & Eugene H. Spafford

Carvey, Harlan

  • GMU2005 presentations [Zipped PP Presentations] August 2005
    Topics: The Windows Event Log file format; Tracking USB storage devices across Windows systems; File/document metadata.

Ceroni, Cristian

Davis, Chris, David Cowen & Aaron Phillipp

Department of Energy

Dornseif, Maximillian & Thorsten Holz

Eckstein, Knut & Marko Jahnke

Farmer, Dan & Wietse Venema

  • Forensic Discovery (The Book)
    The final HTML drafts that were sent to the publisher; minus the final formatting and a few minor changes

Fellows, Geoff H.

Foster, James C. & Vincent T. Liu

Geiger, Matthew

Geiger, Matthew & Lorrie Faith Cranor

Geradts, Zeno, Arnout Ruifrok, Ivo Alberink, Jurrien Bijhold, Mirelle Goos, Bart Hoogeboom & Derk Vrijdag

Geradts, Zeno, Rikkert Zoun, Sjoert Bakker, Derk Vrijdag, Jurrien Bijhold

Gillam, Wm. Blair & Marc Rogers

Grand, Joseph

Grimes, Roger A.

Hausman, Kalani Kirk

Hilton, Kelvin

Kleiman, Dave

Legary, Michael

Louwrens, Buks

Lucid IT

Mandia, Kevin

Marko, Chris

Muller, Jon

Musil, Marcin

NIST, Tim Grance, Suzanne Chevalier, Karen Kent & Hung Dang

Nolan, Richard, Colin O’Sullivan, Jake Branson, & Cal Waits

Nugen, Stephen M.

Pan, Lei & Lynn M. Batten

Parker, Don & Mike Sues

Peron, Christian S.J. & Michael Legary

Richard, Golden G. III & Vassil Roussev

Sarmoria, Christian G. & Steve J. Chapin

Steichen, Pascal

Tiger Shark

Tseng, Newbug

Turner, Philip

van der Knijff, Ronald

Vidas, Tim

Wang, Wei & Thomas E. Daniels


Within Legalese section

Carr, Michael G.

Loncke, Mieke

Nelson, Sharon D. & John W. Simek

Swienton, Anjali R. & Erin E. Kenneally

Walker, Cornell


Within International section

GERMAN

Dornseif, Maximillian


Within Resources / Audio & Video section

Cynergy's Web Cast Previews
Digital Evidence and the Role it Plays - MCLE
Computer Evidence Collection and Preservation (labelling evidence)

Attenex Archived Webcasts
Sept 2004 - Creating an Effective Digital Discovery Strategy
Oct 2004 - Discovery Tactics for Microsoft Outlook and Lotus Notes

Digital Forensics
Information Security Forum Meeting - Kirk Hausman, speaker

Digital Forensics
John Walters interviews Dartmouth professor Hany Farid about his work in counterfeit image detection

Merrill Corporation's On-demand Seminars
Dennis Kennedy, Tom O'Connor, & Michael Clark speak on Electronic Discovery (10 seminars available to date)

US Air Force Office of Special Investigations
COURT TV'S FORENSIC FILES & OSI - SHOW #1 - Reassembly of Floppy Disk


Within Resources / Projects section

FCCU GNU/Linux Forensic Boot CD
This CD is based on KNOPPIX by Klauss Knopper, remastered for use by a computer forensic investigator.

SMART Linux
SMART Linux is a live CD and an installable distribution of Linux designed for Data Forensics and Incident Response


Within Resources / Other Tools section

Eindeutig
A tool that parses Outlook Express DBX files

Offline Registry Parser [from Harlan Carvey]
A Perl script that parses the raw Registry files in binary mode, and prints out the data, to include LastWrite times

Scalpel: A Frugal, High Performance File Carver
Scalpel is a fast file carver that reads a database of header and footer definitions and extracts matching files from a set of image files or raw device files.

TAFT - The ATA Forensics Tool
TAFT is an ATA (IDE) forensics tool that communicates directly with the ATA controller. It can retrieve various information about a hard disk, as well as look at and change the HPA and DCO settings.

TULP2G
A forensic framework for extracting and decoding data - July 31 2005: TULP2G 1.2.0.2 Released


Within Forums

Forensic Magazine
On-Line and Print Source For Information on Forensic Products, Equipment, and Services; has several articles related to Digital Forensics

ForensicIT Forums

(IN)SECURE Magazine
A freely available digital security magazine discussing some of the hottest information security topics

PuterCops.org: Forums

SMARTFORENSICS Forums
SMART and Linux Support boards

Technology Pathways Community Forum
Knowledge Management and Collaboration Lists for ProDiscover Users


© 2005 All rights reserved