Wednesday, March 29, 2017

Interesting new webcast on SANS "Forensic State Analysis: A New Approach to Threat Hunting"

A new title  "Forensic State Analysis: A New Approach to Threat Hunting" , for old cumbersome name "preemptive enterprise forensic". Very interesting one, lightweight approach :)
It is worth of watching and projecting to your system.

Wednesday, March 22, 2017

Farrady bags

We have a set of new Farady bags, at first glance very good ones, from disklabs.com
It was just a few test mobiles and tablets tested, but looks very good even one  was able to cut off wifi, 3g, bluetooth signals completely.

I think maybe of planning some student research work, as for possible graduation  thesis, to do set of measurements with different devices and different bags and summarize at the end.

15th May 2017

After about 2 months of looking we found no one interested in this type of research. I've contacted local universities but unfortunately no candidates  get back, The idea, tools and rest will be left in waiting till something happen.
Unfortunately it is not the first time to get such response ...

23rd Sep. 2017
No activity even after summer vacation :)
the idea will be shelved for good 

Thursday, March 16, 2017

Lectures in ORF just started

Lectures in Basics of Digital Forensics (ORF) just started last week. This time we have 6 students
so it is small easy to work group, there is one peculiarity .. classroom is huge :) It is stark contrast whren we had about 18 students in very tiny classrom :) :)
First lecture was also videtaped, but video failed in the second half.

Tuesday, March 14, 2017

very cute animation on BBC about IoT

Nice animation on BBC site The era of ‘computerised catastrophic failure’ is here
based on  what Bruce Schneier  believes is a ‘grand challenge’ in his field for 2017.
Simple to understand and beautifull to see, also based on vunerable flash ?

Just a few minutes later I've noticed this post on local news portal
"Proizvodjaci vibratora moraju korisnicima isplatiti 4 milijuna dolara zbog spijuniranja"  it goes so well, at the end of the article is one very curious line "An unwanted activation of the vibrator is a potential rape" ... maybe far fetched but ..


15th May 2017
There is very good article on the  SANS  reading room  about securing home IOTs "Securing the Home IoT Network" it si worth of reading and applying it to your home :)

Wednesday, March 8, 2017

Digital forensic sites from the past

I was recently taken down by an almost almighty flu. Among numerous cups of tea and aspirins there was time to catch-up with reading and visit old web locations. It was refreshing to visit V. Venema porcupine.org site and read book and classroom slides in detail. There is my favorite definition of forensic computing and probably the earliest scholar writing on digital forensic, still very much worth of reading. When I'm lecturing digital forensics on uni, I'm always referencing to this site and its ideas. With the time understanding of UNIX like OS diminished among students, but still is is something what IT expert have to read if wants to in IT security.  Unfortunately this site of often only referenced in digital forensics curriculums, what is a great shame. Brian Carrier book on file system forensic build on knowledge you can get from porcupine,