« Home | New form of steganography discovered » | Stick your password on a post-it » | Windows and Linux access without knowing the passw... » | Changing MAC addresses in Windows » | Detecting encrypted data » | The daily life of an infosec professional » | Training » | The importance of timestamps » | Smart criminals punished harder than idiots » | HB Gary Responder Field Edition Evaluation »

BackTrack ready for use in forensics

I've known BackTrack for a while already, and it includes various nice tools for digital forensics. However, up till now, it was never 'good enough' for real forensic purposes, as it mounts drives etcetera. In BackTrack 4, this has changed, as you can now select to boot without swap and mounting drives.

Of course, as always, verify that it does what it says on the tin. But if it does, this is a very nice addition to a forensic or incident response toolkit. Forensic tools currently included in BackTrack are:
Autopsy
dcfldd
Foremost
Magic Rescue
Mboxgrep
scalpel
Vinetto
For more info about BackTrack and the various other tools included, visit the website or book one of their excellent training classes.

Labels: ,

Post a Comment

Links to this post

Create a Link

About me

  • I'm An Hilven
  • My CV
  • me

Interesting News

My Library


    Shelfari

Disclaimer