Quantcast
Channel: SANS Blog
Browsing all 381 articles
Browse latest View live

"Digital Forensics Case Leads: News from CES Las Vegas Might Open Doors for...

In this issue of Case Leads we go around the globe to cover telematics app development from Ford at CES Las Vegas; to Russia for new tools that allow investigators to access files users try to keep...

View Article


"Digital Forensics Case Leads: Sleeper Malware targets diplomatic entities in...

In this issue of Case Leads, Magnet Forensics updates its IEF with new neat features, Analysing PE file with python, retrieving iPhone voicemail with Perl, sleeper APT target diplomats, banking trojans...

View Article


"Course Review: Course Review: SANS FOR408 Computer Forensic Investigations...

There is a brand new course review posted over at The Ethical Hacker Network discussing FOR408Windows Forensics In-Depth authored by Ovie Carroll, Rob Lee, and Chad Tilbury. The reviewer, Jason...

View Article

"Special - SANS Online Digital Forensics and Incident Response Courses "

FOR408: Computer Forensic Investigations - Windows In-DepthMar 18, 2013 - Apr 24, 2013 w/Ovie Carrollhttp://www.sans.org/vlive/details/for408-mar-2013-ovie-carrollFOR508: Advanced Computer Forensic...

View Article

"Case Leads: Backtrack Soon to be Back as Kali, Why Logs Should Really be...

This week's edition of CaseLeads features a teaser from the Backtrack developers, a case study from Verizon which demonstrates the need for regular log review, a report on the impact of the recent DDoS...

View Article


"Digital Forensics Case Leads: When the news is the news"

This week's case leads has several new tool updates and some interesting articles about reverse engineering, database forensics and a new forensics challenge. However, the big stories this week were...

View Article

"Jake Williams' Tips on Malware Analysis and Reverse-Engineering"

In this interview, Jake Williams discusses his perspectives on getting into digital forensics, crafting a strong malware analysis reports and making use of the analyst's findings. Jake is an incident...

View Article

"Anti-virus is not enough to defeat APT groups"

In last week's story about the New York Times breach, you read that thebest-selling anti-virus system failed entirely. Every organization thathas gone through a targeted attack learns that same lesson...

View Article


"Announcing: The 2013 SANS Digital Forensics and Incident Response Summit...

http://www.sans.org/event/dfir-summit-2013PDF DOWNLOADTuesday, July 9, 2013TimeRoom 1Room ...

View Article


"Digital Forensics Case Leads: Got Malware?"

This week on Case Leads, it's mostly about the malware. A new tool called Maltrieve will help retrieve it for analysis, articles on Java *.idx files and NTFS artifacts can help us find it post-mortem,...

View Article

"SANS Cyber Threat Intelligence Summit - 22 Mar 2013"

Join SANS for this innovative 1-day event as we focus on enabling organizations to build effective cyber threat intelligence capabilities.AGENDAConventional network defense tools such as intrusion...

View Article

"Jake Williams' Tips on Malware Analysis and Reverse-Engineering - Part 2"

In this interview, Jake Williams shares advice on acting upon the findings produced by the malware analyst. He also clarifies the role of indicators of compromise (IOCs) in the incident response...

View Article

"Jake Williams' Tips on Malware Analysis and Reverse-Engineering - Part 3"

In this interview, Jake Williams discusses his perspective on the various approaches to reverse-engineering malware, including behavioral, dynamic and static analysis as well as memory forensics. Jake...

View Article


"Jake Williams' Tips on Malware Analysis and Reverse-Engineering"

I had the pleasure of speaking with Jake Williams, an incident responder extraordinaire, who teaches SANS' FOR610: Reverse-Engineering Malware course. In this interview, Jake discussed his perspectives...

View Article

"Announcing: The 2013 SANS Digital Forensics and Incident Response Summit...

http://www.sans.org/event/dfir-summit-2013AGENDA PDF DOWNLOADTuesday, July 9, 2013TimeRoom 1

View Article


"Java IDX Sample Files from Java Spearphishing Attack from SANS FOR508"

Earlier this year, SANS created the most in-depth incident response training scenario that spans multiple systems in FOR508: Advanced Forensic Analysis and Incident Response. We discussed the entire...

View Article

"CaseLeads: China Cyber Espionage Exposed, Account Issues with Twitter and...

This week on Case Leads, we learn the truth of China's cyber espionage unit, Twitter verified accounts were hacked and there have been some updates to some of your favorite tools.If you have an item...

View Article


"Report Writing for Digital Forensics: Part II"

This blog post is a second edition and follow-up toIntro to Report Writing for Digital Forensics., which you've taken the time to review, digest, and dissect. How the digital forensic practitioner...

View Article

"Cyber Threat Intelligence Full Agenda - Government Pricing Announced"

SANS is offering a one-time discount for the Cyber Threat Intelligence Summit to government employees (e.g., federal, state, local, DoD). This offer reduces the registration fee from $895 to $395 and...

View Article

"Digital Forensics Case Leads: Email Scammers, Android Malware, DoS Against...

In this issue of Case Leads with have Android Malware increase, DoS Attacks on Czech Banks, some updates to Oxygen Forensics Suite and a New tool from Magnet Forensics and a little levity.If you have...

View Article
Browsing all 381 articles
Browse latest View live


Latest Images