SANS Digital Forensics and Incident Response Blog: Category - Computer Forensics

Case Leads: DFIR Lessons from Sandy; The Advanced Persistent Intruder; The Secure Breach; Windows8 Forensics; South Carolina Tax Info Protected by "TWO FIREWALLS"

The general public is getting a lesson in incident response with the post Hurricane Sandy storm damage in the Northeastern part of the United States. Your case leads blogger is working on incident responses related to the storm. Many non-technical professionals have had a chance to witness the challenges of DFIR. And some are starting … Continue reading Case Leads: DFIR Lessons from Sandy; The Advanced Persistent Intruder; The Secure Breach; Windows8 Forensics; South Carolina Tax Info Protected by "TWO FIREWALLS"


Get a MacBook Air, Toshiba Portege Ultrabook, or $850 Savings with SANS Online Training

The SANS Institute is providing your choice of a MacBook Air, Toshiba Portege Ultrabook, or $850 discount to students who register and pay for a qualifying* SANS vLive or OnDemand course by 11/28/12. Note: A SANS FOR508 - vlive - starts Nov 13 taught by Rob Lee, Chad Tilbury, and Alissa Torres. Sign up now! … Continue reading Get a MacBook Air, Toshiba Portege Ultrabook, or $850 Savings with SANS Online Training


Help Improve EDD - Encrypted Disk Detector!

Device acquisition may not be the sexiest phase of digital forensics, but it has the most number of pitfalls and can result in catastrophic loss. If a practitioner makes a mistake during acquisition, the investigation may simply be over, with nothing left to examine. Establishing an acquisition process is important, and a critical part of … Continue reading Help Improve EDD - Encrypted Disk Detector!


SANS #DFIR Summit 2013 - Call For Speakers - Now Open

Dates: Summit Dates: - July 9-10, 2013 Post-Summit Course Dates: July 11-16, 2013 Summit Venue: Omni Hotel Downtown Austin 700 San Jacinto @ 8th Street Austin, TX 78701 Phone:(512) 476-3700 Fax: (512) 397-4888 Omni Hotel The 6th annual Forensics and Incident Response Summit will again be held in the live musical capital of the world,Austin, … Continue reading SANS #DFIR Summit 2013 - Call For Speakers - Now Open


Digital Forensics Case Leads: A MiniFlame Has Been Lit, Learning a Language and New and Updated Tools.

In this week's SANS Case Leads, new tool pyMFTGrabber is out, a MiniFlame has been lit, learning a language and more. If you have an item you'd like to contribute to Digital Forensics Case Leads, please send it to caseleads@sans.org Tools: The Sleuth Kit (TSK) 4.0 is out here. The Autopsy Forensic Browser is now … Continue reading Digital Forensics Case Leads: A MiniFlame Has Been Lit, Learning a Language and New and Updated Tools.