Hackers Brew Self-Destruct Code to Counter Police Forensics

December 14th, 2009 admin

Hackers have released an application designed to thwart a Microsoft-packaged forensic toolkit used by law enforcement agencies to examine a suspect’s hard drive during a raid. The hacker tool, dubbed DECAF , is designed to counteract the Computer Online Forensic Evidence Extractor, aka COFEE. The latter is a suite of 150 bundled, off-the-shelf forensic tools that run from a script. Microsoft combined the programs into a portable tool that can be used by law enforcement agents in the field before they bring a computer back to their forensic lab. The script runs on a USB stick …


Originally posted on Wired

 
  Related Posts
Ethics of spilled COFEE
Ethics of spilled COFEE
Last year Microsoft released a tool called COFEE (Computer Online Forensic Evidence Extractor) to law enforcement agencies around the nation and around the world a couple of years ago .  Read More →
Guide to Microsoft Police Forensic Services
The “Microsoft Online Services Global Criminal Compliance Handbook (U.S. Domestic Version)” (also can be found here, here, and here) outlines exactly what Microsoft will do upon police request. Here’s a good summary of what’s in it: The Global Criminal Compliance Handbook is a quasi-comprehensive explanatory document meant... 
‘Google’ Hackers Had Ability to Alter Source Code
The hackers who targeted Google and other companies in January targeted the source code management systems of companies, allowing them to siphon source code as well as modify it, according to a new report. More importantly, systems that the companies used to develop and manage their source code have numerous security flaws that would allow easy compromise... 
Google Hackers Targeted Source Code of More Than 30 Companies
A hack attack that targeted Google in December also hit 33 other companies, including financial institutions and defense contractors, and was aimed at stealing source code from the companies, say security researchers at iDefense. The hackers used a zero-day vulnerability in Adobe Reader to deliver malware to the companies and were in many cases successful... 
Pork-Filled Counter-Islamic Bomb Device
Okay, this is just weird: Mark S. Price, a specialist in public security, and his privately held company, Paradise Lost Antiterrorism Network of America (www.plan-a.us), have recently applied to the United States Patent and Trademark Office for a Utility Patent on their Suicide Bomb Deterrent, a security device designed, manufactured and distributed... 
Report: Google Hackers Stole Source Code of Global Password System
The hackers who breached Google’s network last year were able to nab the source code for the company’s global password system, according to The New York Times . The single sign-on password system, which Google referred to internally as “Gaia,” allows users to log into a constellation of services the company offers —... 
Crypto Implementation Failure
Look at this new AES-encrypted USB memory stick. You enter the key directly into the stick via the keypad, thereby bypassing any eavesdropping software on the computer. The problem is that in order to get full 256-bit entropy in the key, you need to enter 77 decimal digits using the keypad. I can’t imagine anyone doing that; they’ll enter... 
Whistleblower Site Back After Microsoft Withdraws Complaint
Whistleblower Site Back After Microsoft Withdraws Complaint
Cryptome, the secret-document-spilling site, is back online Thursday, after Microsoft withdrew a copyright complaint that shuttered the site the day before. Microsoft’s efforts to suppress a document about how to subpoena online user data backfired, leading instead to widespread attention to (and republication of) the document it tried to... 
Review of Virtualization and Forensics Posted
Review of Virtualization and Forensics Posted
Amazon.com just published my three star review of Virtualization and Forensics by Dianne Barrett and Gregory Kipper. From the review : “Virtualization and Forensics” (VAF) offers “a digital forensic investigator’s guide to virtual environments” as its subtitle. Eric Cole’s introduction says “How do we... 
Hiring Hackers
Any essay on hiring hackers quickly gets bogged down in definitions. What is a hacker, and how is he different from a cracker? I have my own definitions, but I’d rather define the issue more specifically: Would you hire someone convicted of a computer crime to fill a position of trust in your computer network? Or, more generally, would you…... 
  Related Tweets from Twitter
Ardehp (Phedra)  : @agnes_umaaa yepp, went there to collect my album from hmv, then did a little shopping. now i'm sitting in a cafe struggling to finish cofee..
Updated : 2010-07-31T09:22:25Z   |  Reply  |  View Tweet
hawaii_network (Hawaii Network)  : Anthony's Coffee Paia-Great Food and Cofee- Best Hana Picnic Lunch on Maui..
Updated : 2010-07-31T09:07:35Z   |  Reply  |  View Tweet
Jessicaf731 (Jess :))  : @bonitahannabum thank you hanna! im actually in sf for a weeK! we should get some cofee or lunch!..
Updated : 2010-07-31T08:56:09Z   |  Reply  |  View Tweet
deepaksinghal26 (deepak singhal)  : @sonamakapoor y dnt u take a cup of cofee dear it vill help u out..
Updated : 2010-07-31T08:14:11Z   |  Reply  |  View Tweet
rahimfafa10 (Shehu Ibrahim)  : @valstyleee wow dats bad.... try cofee..
Updated : 2010-07-31T08:13:02Z   |  Reply  |  View Tweet
  Related News from Digg
No comments yet.
You must be logged in to post a comment.
TOP