解析メモ

マルウェア解析してみたり解析に役に立ちそうと思ったことをメモする場所。このサイトはGoogle Analyticsを利用しています。

4n6 Week 09 – 2024 - SOFTWARE UPDATES

本エントリは This Week in 4n6 (FourAndSix=Forensics) で紹介された各記事の冒頭を表示し、チェックする記事をザッピングするために自動生成&投稿したものです。4n6 は こちら からご確認いただけます。

SOFTWARE UPDATES

Belkasoft

+1 (650) 272-0384 Sign in Solutions For Business Boost cyber incident response, eDiscovery and forensics capacity of your organization. For Law Enforcement Acquire, examine and report digital evidence in a forensically sound way. For Academia Learn the art of digital forensics and cyber incident response with Belkasoft's training. Products Belkasoft X Forensic For law enforcement: Acquire, examine and analyze evidence from mobile, computer, drones, cars and cloud sources. Belkasoft X Corporate F...

Canadian Centre for Cyber Security

Skip to content Toggle navigation Sign in Product Actions Automate any workflow Packages Host and manage packages Security Find and fix vulnerabilities Codespaces Instant dev environments Copilot Write better code with AI Code review Manage code changes Issues Plan and track work Discussions Collaborate outside of code Explore All features Documentation GitHub Skills Blog Solutions For Enterprise Teams Startups Education By Solution CI/CD & Automation DevOps DevSecOps Resources Learning Pathways...

Costas K

Latest Latest Compare Choose a tag to compare View all tags kacos2000 released this 25 Feb 21:44 v.1.0.17.0 bed0838 This commit was created on GitHub.com and signed with GitHub’s verified signature. GPG key ID: B5690EEEBB952194 Learn about vigilant mode. [Updates] Even more corrections & updates prompted by more variations found during testing & carving, such as this: TimeStamp/FileSize check #1: Shortcut of File Extracted from ZIP archive: $MFT FILE record of the same Target File ($Standard_Inf...

CyberYom

MFT Analysis tool written by me! Posted by CyberYom on February 24, 2024 Howdy all! Its been quite awhile since I’ve been on here… so sorry about that, but I bring some exciting updates! This post will be about a new tool called MFTAnalyzer. MFTAnalyzer is a command line tool built to parse an NTFS $MFT file, and was actually written by me! If you want to download a copy of the tool and follow along with me during this post, feel free to download the tool here! More about the Tool! This tool was...

Digital Sleuth

Skip to content Toggle navigation Sign in Product Actions Automate any workflow Packages Host and manage packages Security Find and fix vulnerabilities Codespaces Instant dev environments Copilot Write better code with AI Code review Manage code changes Issues Plan and track work Discussions Collaborate outside of code Explore All features Documentation GitHub Skills Blog Solutions For Enterprise Teams Startups Education By Solution CI/CD & Automation DevOps DevSecOps Resources Learning Pathways...

Magnet Forensics

The latest release of Magnet AXIOM Cyber is here, and we’re excited to share new features for analysis and cloud acquisitions. In this release, new features and updates include: AWS Sign-in Improvements Animated Maps We’ve also updated and added to our artifact support (updates are at the end of this blog.) Upgrade to AXIOM Cyber 7.10 within the AXIOM Cyber interface or through the Customer Portal. Haven’t tried AXIOM Cyber yet? Request your free trial here. AWS Sign-In Improvements With the rel...

We are thrilled to release AXIOM 7.10! This is the final release before our biggest release of the year, AXIOM 8.0, which will be launched at our annual Magnet User Summit (MUS) in Nashville – to learn more or to grab a front-row seat, visit //magnetusersummit.com/. AXIOM 7.10 adds a range of new features and new artifact support to keep your investigations current with the latest evidence sources: Updates to Thorn’s CSAM Model – increasing the accuracy of Thorn’s CSAM model. Animated Maps – vis...

Manabu Niseki

Skip to content Toggle navigation Sign in Product Actions Automate any workflow Packages Host and manage packages Security Find and fix vulnerabilities Codespaces Instant dev environments Copilot Write better code with AI Code review Manage code changes Issues Plan and track work Discussions Collaborate outside of code Explore All features Documentation GitHub Skills Blog Solutions For Enterprise Teams Startups Education By Solution CI/CD & Automation DevOps DevSecOps Resources Learning Pathways...

MasterParser

Latest Latest Compare Choose a tag to compare View all tags YosfanEilay released this 26 Feb 20:47 · 4 commits to main since this release v2.4 3050b9e Ready to take your incident response skills to the next level? Big News Alert: MasterParser v2.4 Update! 🚀 🔍 Exciting Addition: Statistics Tables and Raw Events Feature! Hey folks, in our latest MasterParser update (v2.4), we're bringing in something really cool: Statistics Tables and Raw Events. This update is all about giving you more ways to ha...

OpenCTI

Version 6.0.3 Compare Choose a tag to compare View all tags Filigran-Automation released this 02 Mar 16:21 · 23 commits to master since this release 6.0.3 448adf0 This commit was signed with the committer’s verified signature. SamuelHassine Samuel Hassine GPG key ID: 966CA4FD74C31B9B Learn about vigilant mode. Enhancements: #6200 Handle complex paths in stix filtering resolution and use it consistently #6154 Adding PAP marking definition by default in fresh images Bug Fixes: #6212 Infinite loop ...

Oxygen Forensics

. February 20, 2024 Find critical evidence quickly and accelerate case resolution using targeted, remote data collection, task scheduling, and advanced search and analysis. For a full list of updates, refer to the “What’s New” file in Oxygen Remote Explorer, formerly known as Oxygen Corporate Explorer. 1.0 1.1 1.2 1.3 1.3.1 Oxygen Remote Explorer v.1.3.1 Download PDF The latest update to our remote and onsite collection solution is here, Oxygen Remote Explorer v.1.3.1! Note that this product was...

. February 06, 2024 Oxygen Forensic® Detective v.16 updates include new updates to analysis and analytic tools, KeyScout, Device Extractor, supported apps, expansion of cloud support, and more. For a full list of updates, refer to the “What’s New” file in the Oxygen Forensic® Detective “Options” menu. 16.0 16.0.1 16.1 16.1.1 Oxygen Forensic® Detective v.16.1.1 Download PDF This Oxygen Forensic® Detective update introduces the following key features Support for Qualcomm Snapdragon 845/710 chipset...

Passmark Software

Home Products Training Support About Us Forum Sign In FAQ What’s New Pricing Download Free Trial Buy Now What's New? Expand all Collapse all V11.0 build 1005 28th February 2024 Deleted Files Search Fixed recovered partitions not being scanned on first access Removed error message being displayed when invalid NTFS partition found (eg. recovered partitions) Manage Case Fixed issue when adding new category and reordering immediately afterwards would not save the correct order Fixed issue where cate...

Regipy

4.0.0 Latest Latest Compare Choose a tag to compare View all tags mkorman90 released this 24 Feb 16:44 · 7 commits to master since this release 4.0.0 414e74d This commit was created on GitHub.com and signed with GitHub’s verified signature. GPG key ID: B5690EEEBB952194 Learn about vigilant mode. Please note, command line prefix has been changed from registry- to regipy- to avoid collisions. What's Changed Fix output log typo in cli.py -- shows primary path for 'secondary log file' by @agret in...

Security Onion

Security Onion 2.3.290 is now available! It includes updates for both Suricata and Zeek://docs.securityonion.net/en/2.3/release-notes.html#changesPlease note that Zeek now includes Community ID by default. This could potentially cause a problem if you've modified your Zeek config in the past. If you have /opt/so/saltstack/local/pillar/zeek/init.sls, then you should move it another location so that it doesn't override the new Zeek config. For example, please see://github.com/Security-Onion-Soluti...

Sigma

Release r2024-02-26 Latest Latest Compare Choose a tag to compare View all tags github-actions released this 26 Feb 21:58 · 4 commits to master since this release r2024-02-26 6b8cd1f This commit was created on GitHub.com and signed with GitHub’s verified signature. GPG key ID: B5690EEEBB952194 Learn about vigilant mode. New Rules new: AWS Console GetSigninToken Potential Abuse new: Bitbucket Audit Log Configuration Updated new: Bitbucket Full Data Export Triggered new: Bitbucket Global Permissio...