The Electronic Evidence Information Center

Home


Digital Forensics BIBLIO


What's New


ALL
Other Resources


Digital Forensic Books


OS Specific Articles


Links to Links


About This Site

  WHAT'S NEW?

This space is used to maintain a record of the latest additions to the site.


Past Update Pages

[2003 - 2005]

January 2006 February 2006 March 2006
April 2006 May 2006 June 2006
July 2006 August 2006  


AccessData

America Online

Alink, W., R.A.F. Bhoedjang, P.A. Boncz, & A.P. de Vries

Benninger, Corey

Brinson, Ashley, Abigail Robinson, & Marcus Rogers

Bunting, Steve

  • Log Parser (Microsoft) June 2006
    The "Swiss Army Knife" for Intrusion Investigators and Computer Forensics Examiners

Burdach, Mariusz

Butler, Frank

CDESF (Common Digital Evidence Storage Format Working Group)

Carrier, Brian

Carrier, Brian D. & Eugene H. Spafford

Chan, Fred

Daniels, Keith & Chris Sanft

Digital Forensic Certification Board (DFCB)

Fleischmann, Stefan

Forentech

Garfinkel, Simson L.

Gleason, B.J.

Harris, Ryan

Hartley, Bruce

Heiser, Jay

Hines, 'Loki'

Ieong, Ricci S.C.

Interpol Mobile Phone Forensic Tools Sub-Group

Jansen, Wayne & Rick Ayers

Jeyaraman, Sundararaman, & Mikhail J. Atallah

Kennedy, Ian

Khanna, Nitin, Aravind K. Mikkilineni, Anthony F. Martone, Gazi N. Ali, George T.-C. Chiu, Jan P. Allebach, & Edward J. Delp

Klein, Tobias

Kornblum, Jesse

Krawetz, Dr. Neal

Lee, Sangwon, David A. Shamma, Bruce Gooch

Lyle, James R.

McDougal, Monty

Moulton, Scott

Murphy, Daniel

Musters, Marty

Netherlands Forensic Institute

Network Security Technology

Pasco, Benedict M.

Patel, A., M. Shah, R. Chandramouli, & K.P. Subbalakshmi

Riden, Jamie

Rogers, Marcus K., Kathryn Seigfried, & Kirti Tidke

Roussev, Vassil, Yixin Chen, Timothy Bourg, & Golden G. Richard III

Schatz, Bradley, George Mohay, & Andrew Clark

Schuster, Andreas

SEARCH Training Services

Shipley, Todd G. & Henry R. Reeve

Sitaraman, Sriranjani

SWGDE-SWGIT

Turner, Paul

Vidas, Tim

Walters, AAron

Willis, Chuck & Rohyt Belani


Within Legalese

Guidance Software

Velasco, Jason


Within Forensic Utilities

dumpautocomplete [Free]

  • Dump Firefox AutoComplete files into XML

Forensic Analysis Toolkit (FATKit) [In development]

  • A new cross-platform, modular, and extensible digital investigation framework for analyzing volatile system memory.

Live View [Free]

  • A Java-based graphical forensics tool that creates a VMware virtual machine out of a raw (dd-style) disk image or physical disk.

Process Dumper & Memory Parser [Free]

  • Process Dumper is able to make a dump of a running process in a forensical manner.
    Memory Parser (MMP) is able to parse the meta information stored within process dumps made with Process Dumper (pd) and extract the different process mappings to disk

PTfinder Collection [Free]

  • A collection of PTfinders for Windows 2000, Windows XP (should be good for XP SP1 too), Windows XP SP2 and Windows Server 2003 (courtesy of Andreas Schuster)

Sleuthkit Windows Executables [Free]

  • Microsoft Windows executables for The Sleuth Kit; full source code and documentation can be downloaded.

ssdeep [Free]

  • The utility works like md5deep to create a short text signature for each input file. The signatures can be used to match other files against the original. Unlike MD5 or SHA-1, however, this algorithm can match two input files even if they are not exactly the same. Files match if they have significant homologies, or the same sequences of bytes in the same order.

Sleuthkit/Autopsy Foremost patch [Free]

  • Allows the integration of Foremeost into Autopsy, along with the option to edit the configuration file.

Swapper [Free]

  • Swapper is a small tool written in C that swaps all the bytes present in a file per pair. This is required for forensic research of disks for a large number of mobile phones and of copiers.


Within Audio/Video

Let's Talk Computers


Within International

GERMAN

Klein, Tobias


© 2006 All rights reserved