解析メモ

マルウェア解析してみたり解析に役に立ちそうと思ったことをメモする場所。このサイトはGoogle Analyticsを利用しています。

4n6 Week 18 – 2023 - SOFTWARE UPDATES

本エントリは This Week in 4n6 (FourAndSix=Forensics) で紹介された各記事の冒頭を表示し、チェックする記事をザッピングするために自動生成&投稿したものです。4n6 は こちら からご確認いただけます。

SOFTWARE UPDATES

Amped

Emi Polito April 27, 2023 Welcome to another exciting Amped Replay update! Amped Replay is the enhanced video player for the modern investigator. It is designed to give immediate playback access to a variety of proprietary video formats in order to correct, enhance, annotate and redact the evidence in a safe and efficient forensic environment. With this update, we bring you a number of intuitive improvements on how you annotate the evidence, as well as improved support for timestamp and subtitle...

Atola

Published by Sergiy Pasyuta on April 28, 2023 We are ready to roll with the new performance update for Atola TaskForce. In version 2023.4, we focused on productivity, better user experience, and more efficient use of network resources. Here are main improvements included in TaskForce 2023.4: Better performance when multitasking and imaging to multiple files More responsive user interface when performing multiple resource-consuming tasks New tool for optimizing speed of a remote work folder Let’s...

Crowdstrike

Skip to content Toggle navigation Sign up Product Actions Automate any workflow Packages Host and manage packages Security Find and fix vulnerabilities Codespaces Instant dev environments Copilot Write better code with AI Code review Manage code changes Issues Plan and track work Discussions Collaborate outside of code Explore All features Documentation GitHub Skills Blog Solutions For Enterprise Teams Startups Education By Solution CI/CD & Automation DevOps DevSecOps Case Studies Customer Stori...

Didier Stevens

UserAssist Categories .NET 010 Editor Announcement Arduino Bash Bunny Beta bpmtk Certification Didier Stevens Labs Eee PC Elec Encryption Entertainment Fellow Bloggers Forensics Hacking Hardware maldoc Malware My Software N800 Networking Nonsense nslu2 OSX PDF Personal Physical Security Poll Puzzle Quickpost Release Reverse Engineering RFID Shellcode smart card Spam technology UltraEdit Uncategorized Update video Vulnerabilities WiFi Windows 7 Windows 8 Windows Vista Wireshark Blog Stats 7,329,2...

Doug Burks at Security Onion

We recently released the first Beta version of Security Onion 2.4://blog.securityonion.net/2023/03/security-onion-24-beta-release-now.htmlToday, we are excited to release the second Beta version of Security Onion 2.4!Release NotesPlease review the Release Notes for changes in this release://docs.securityonion.net/en/2.4/release-notes.html#beta-2-20230424-changesKnown IssuesHere are some known issues that should be resolved in later releases:You cannot do an in-place upgrade from 2.3 to 2.4. We a...

Security Onion 2.3.240 is now available! This release resolves a security issue in SOC Case attachments and adds a fix for Amazon deployments://docs.securityonion.net/en/2.3/release-notes.html#changesDocumentationYou can find our online documentation here://docs.securityonion.net/en/2.3/You can also purchase a printed copy of our documentation from Amazon://securityonion.net/bookThe printed book will be updated for 2.3.240 in the next few days and includes an inspiring foreword by Richard Bejtli...

Drew Alleman

Latest Latest Compare Choose a tag to compare View all tags Drew-Alleman released this 26 Apr 04:21 · 8 commits to main since this release 1.1.2 8941fd3 This commit was created on GitHub.com and signed with GitHub’s verified signature. GPG key ID: 4AEE18F83AFDEB23 Learn about vigilant mode. This update includes the addition of the dependency "walkdir". The directory option is used to process all files found in the specified directory you can still use the -D or --display option to show the file ...

ExifTool

ExifTool Version History RSS feed: //exiftool.org/rss.xml Note: The most recent production release is Version 12.60. (Other versions are considered development releases, and are not uploaded to MetaCPAN.) Apr. 24, 2023 - Version 12.61 Added ImageDataMD5 support for J2C and JXL images Added support for PDF 2.0 (specification is finally freely available) Added ability to extract timed Accelerometer data from Azdome GS63H MP4 videos which don't contain GPS Added some new Sony lenses (thanks Jos Roo...

Federico Lagrasta

Latest Latest Compare Choose a tag to compare View all tags last-byte released this 25 Apr 19:29 v1.10.0 d9aa7af This commit was created on GitHub.com and signed with GitHub’s verified signature. GPG key ID: 4AEE18F83AFDEB23 Learn about vigilant mode. This release implements 3 new detections and some minor bug fixes, details in the changelog. Assets 3 All reactions Footer © 2023 GitHub, Inc. Footer navigation Terms Privacy Security Status Docs Contact GitHub Pricing API Training Blog About You c...

Foxton Forensics

Browser History Examiner PageRecon Free Tools Browser History Capturer Browser History Viewer SQLite Examiner Support Customer Portal FAQs Renew Subscription Submit Ticket Resources Blog Downloads Free Tools News Company Contact Us Our Clients About us Browser History Examiner — Version History FeaturesPricingFAQsUser GuideVersion History Version 1.18.2April 25, 2023 Support for Edge form history Version 1.18.1March 07, 2023 Performance improvements to favicon extraction Version 1.18.0October 18...

Jiří Vinopal

Public Notifications Fork 1 Star 18 Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE 18 stars 1 fork Star Notifications Code Issues 0 Pull requests 0 Actions Projects 0 Security Insights More Code Issues Pull requests Actions Projects Security Insights Dump-GUY/sc2pe This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository. main Switch branches/tags Branches Tags View all branches View all tags Name already in u...

k1nd0ne

Latest Latest Compare Choose a tag to compare View all tags k1nd0ne released this 23 Apr 14:25 v1.2.0-beta d3dca47 VolWeb 1.2.0-beta 🧬 Volatility3 2.4.1 integrations : windows.drivermodule windows.vadwalk linux.sockstat linux.envars 🛠 BugFix: Big offsets could make the analysis crash. 🏇Performances: Javascript artificat filling system optimization. Timeliner graph is displayed without MFScan for better visualization. docker services are renamed to avoid conflicts. String based IOC system is disa...

Invictus Incident Response’

Invictus Incident ResponseFollowApr 25·4 min readWelcome 👋 Microsoft Extractor SuiteAccelerate your cloud incident response in Microsoft environmentsAbout Invictus Incident ResponseWe are an incident response company and we ❤️ the cloud and specialise in supporting organisations facing a cyber attack. We help our clients stay undefeated!🆘 Incident Response support reach out to cert@invictus-ir.com or go to //www.invictus-ir.com/247Introduction & BackgroundWe are happy to announce the release of ...

OpenCTI

Version 5.7.3 Latest Latest Compare Choose a tag to compare View all tags Filigran-Automation released this 29 Apr 11:18 5.7.3 f632564 This commit was signed with the committer’s verified signature. Filigran-Automation Filigran Automation GPG key ID: 47654BE6AC484914 Learn about vigilant mode. Enhancements: #3250 Improve performance of taxii/stream data loading by batching element refs resolution #3224 Create a default Group for Connector at initialization #3223 Ambiguous Error For SSO Failure w...

Passmark Software

Home Products Training Support About Us Forum Sign In FAQ What’s New Pricing Download Free Trial Buy Now What's New? Expand all Collapse all V10.0 Build 1010 26th April 2023 Case Manager Fixed tagged files not being saved to the case due to incorrect duplicate file check Hash Set Fixed bug with exporting CSV files, category was not being exported in the CSV Updated example export output in Help File Install to USB Fixed bug when Installing OSForensics to USB drive with an old version subscriptio...

Securizame

Three Planet Software

Latest Latest Compare Choose a tag to compare View all tags threeplanetssoftware released this 26 Apr 21:41 · 2 commits to master since this release v0.11 87dd32c This commit was created on GitHub.com and signed with GitHub’s verified signature. GPG key ID: 4AEE18F83AFDEB23 Learn about vigilant mode. Major changes: Complete rewrite of HTML generation thanks to @GUI. Added a handful of Apple Uniform Types Bugfixes: Catch PBKDF2 errors generated by using device sign-on. Contributors GUI Assets 2 A...

X1

By Larry Gill April 24, 2023 Since I joined the X1 team last year as CEO, I have made it my priority to double down on our support and expansion of our X1 Social Discovery solution. To that end, I am excited to announce that we have just launched version 7 of X1 Social Discovery, social media and web collections solution, which includes a new cutting-edge Instagram connector, along with our revamped Facebook support, where all our users now have native post-level collection and parsing to ensure...

Xways

X-Ways Forensics 20.8 Log Out | Topics | Search Moderators | Edit Profile X-Ways User Forum » Public Announcements » X-Ways Forensics 20.8 « Previous Next » Author Message Stefan Fleischmann Username: adminRegistered: 1-2001Posted on Tuesday, Feb 7, 2023 - 17:54: A preview version of X-Ways Forensics 20.8 is now available. The URL of the download directory for all recent versions can be retrieved by querying one's license status as always. What's new in v20.8 Preview 1? * Improved some aspects o...