解析メモ

マルウェア解析してみたり解析に役に立ちそうと思ったことをメモする場所。このサイトはGoogle Analyticsを利用しています。

4n6 Week 24 – 2023 - FORENSIC ANALYSIS

本エントリは This Week in 4n6 (FourAndSix=Forensics) で紹介された各記事の冒頭を表示し、チェックする記事をザッピングするために自動生成&投稿したものです。4n6 は こちら からご確認いただけます。

FORENSIC ANALYSIS

David Spreadborough at Amped

David Spreadborough June 6, 2023 This latest post within the CCTV Acquisition series brings us to CCTV Device Removal and Replacement. We will look at the considerations for both and highlight some possible issues. In the last post, we dived into networking and examined how to acquire video evidence via network access. Networking is often conducted within the Forensic Video Unit after a device has been removed from a location. A DVR can sit noisily in a workroom, whilst an investigator slowly ac...

Belkasoft

Automation of your DFIR workflows with Belkasoft has been a well-received topic recently. Following our previous article that explains export of data from Belkasoft X to Amped FIVE, and our customer requests, we continue the series with the new article on how to automate image processing with Belkasoft X and Griffeye tools. Why Griffeye? DI Pro is the product of a Swedish company called Griffeye, renowned for developing advanced solutions for handling large amounts of images and videos. While Be...

Forensic Science International: Digital Investigation

Mark Spencer at Arsenal Recon

Forensic Analysis of the NetWire Stack June 2nd, 2023 Mark Spencer Those of you who have either worked with Joakim Schicht or used his tools know that he applies an incredible combination of technical skills, creativity, and determination into casework and software development. We are extremely fortunate to have him on the Arsenal team!Joakim has recently gone on some adventures involving the NetWire RAT (Remote Access Trojan) that we believe all our colleagues in digital forensics should dig in...

Jacob Torrey at Thinkst Thoughts

Publish DateJune 9, 2023 Jacob Torrey Introduction Today we’re open-sourcing a research project from Labs, ZipPy, a very fast LLM text detection tool. Unless you’ve been living under a rock (without cellphone coverage), you’ve heard of how generative AI large language models (LLMs) are the “next big thing”. Hardly a day goes by without seeing a breathless article on how LLMs are either going to remake humanity, or bring upon its demise; this post is neither, while we think there are some neat ap...