Tuesday, December 22, 2009
Monday, December 14, 2009
Hackers Brew Self-Destruct Code to Counter Police Forensics | Threat Level | Wired.com
Hackers Brew Self-Destruct Code to Counter Police Forensics | Threat Level | Wired.com
Hackers have released an application designed to thwart a Microsoft-packaged forensic toolkit used by law enforcement agencies to examine a suspect’s hard drive during a raid.
The hacker tool, dubbed Decaf, is designed to counteract the Computer Online Forensic Evidence Extractor, aka Cofee. The latter is a suite of 150 bundled, off-the-shelf forensic tools that run from a script. Microsoft combined the programs into a portable tool that can be used by law enforcement agents in the field before they bring a computer back to their forensic lab. The script runs on a USB stick that agents plug into the machine.
The tools scan files and gather information about activities performed on the machine, such as where the user surfed on the internet or what files were downloaded.
Someone submitted the Cofee suite to the whistleblower site Cryptome last month, prompting Microsoft lawyers to issue a take-down notice to the site. The tool was also being distributed through the Bit Torrent file sharing network.
This week two unnamed hackers released DECAF, an application that monitors a computer for any signs that Cofee is operating on the machine.
According to the Register, the program deletes temporary files or processes associated with Cofee, erases all Cofee logs, disables USB drives, and contaminates or spoofs a variety of MAC addresses to muddy forensic tracks. The hackers say that later releases of the program will allow computer owners to remotely lock down their machine once they detect that it has fallen into law enforcement hands. The hackers, however, have not released source code for the program, which would make it easy for anyone to see if the program contains malware that might also harm a computer or allow the attackers to take control of it. Hackers Brew Self-Destruct Code to Counter Police Forensics | Threat Level | Wired.com
Hackers have released an application designed to thwart a Microsoft-packaged forensic toolkit used by law enforcement agencies to examine a suspect’s hard drive during a raid.
The hacker tool, dubbed Decaf, is designed to counteract the Computer Online Forensic Evidence Extractor, aka Cofee. The latter is a suite of 150 bundled, off-the-shelf forensic tools that run from a script. Microsoft combined the programs into a portable tool that can be used by law enforcement agents in the field before they bring a computer back to their forensic lab. The script runs on a USB stick that agents plug into the machine.
The tools scan files and gather information about activities performed on the machine, such as where the user surfed on the internet or what files were downloaded.
Someone submitted the Cofee suite to the whistleblower site Cryptome last month, prompting Microsoft lawyers to issue a take-down notice to the site. The tool was also being distributed through the Bit Torrent file sharing network.
This week two unnamed hackers released DECAF, an application that monitors a computer for any signs that Cofee is operating on the machine.
According to the Register, the program deletes temporary files or processes associated with Cofee, erases all Cofee logs, disables USB drives, and contaminates or spoofs a variety of MAC addresses to muddy forensic tracks. The hackers say that later releases of the program will allow computer owners to remotely lock down their machine once they detect that it has fallen into law enforcement hands. The hackers, however, have not released source code for the program, which would make it easy for anyone to see if the program contains malware that might also harm a computer or allow the attackers to take control of it.
Hackers have released an application designed to thwart a Microsoft-packaged forensic toolkit used by law enforcement agencies to examine a suspect’s hard drive during a raid.
The hacker tool, dubbed Decaf, is designed to counteract the Computer Online Forensic Evidence Extractor, aka Cofee. The latter is a suite of 150 bundled, off-the-shelf forensic tools that run from a script. Microsoft combined the programs into a portable tool that can be used by law enforcement agents in the field before they bring a computer back to their forensic lab. The script runs on a USB stick that agents plug into the machine.
The tools scan files and gather information about activities performed on the machine, such as where the user surfed on the internet or what files were downloaded.
Someone submitted the Cofee suite to the whistleblower site Cryptome last month, prompting Microsoft lawyers to issue a take-down notice to the site. The tool was also being distributed through the Bit Torrent file sharing network.
This week two unnamed hackers released DECAF, an application that monitors a computer for any signs that Cofee is operating on the machine.
According to the Register, the program deletes temporary files or processes associated with Cofee, erases all Cofee logs, disables USB drives, and contaminates or spoofs a variety of MAC addresses to muddy forensic tracks. The hackers say that later releases of the program will allow computer owners to remotely lock down their machine once they detect that it has fallen into law enforcement hands. The hackers, however, have not released source code for the program, which would make it easy for anyone to see if the program contains malware that might also harm a computer or allow the attackers to take control of it. Hackers Brew Self-Destruct Code to Counter Police Forensics | Threat Level | Wired.com
Hackers have released an application designed to thwart a Microsoft-packaged forensic toolkit used by law enforcement agencies to examine a suspect’s hard drive during a raid.
The hacker tool, dubbed Decaf, is designed to counteract the Computer Online Forensic Evidence Extractor, aka Cofee. The latter is a suite of 150 bundled, off-the-shelf forensic tools that run from a script. Microsoft combined the programs into a portable tool that can be used by law enforcement agents in the field before they bring a computer back to their forensic lab. The script runs on a USB stick that agents plug into the machine.
The tools scan files and gather information about activities performed on the machine, such as where the user surfed on the internet or what files were downloaded.
Someone submitted the Cofee suite to the whistleblower site Cryptome last month, prompting Microsoft lawyers to issue a take-down notice to the site. The tool was also being distributed through the Bit Torrent file sharing network.
This week two unnamed hackers released DECAF, an application that monitors a computer for any signs that Cofee is operating on the machine.
According to the Register, the program deletes temporary files or processes associated with Cofee, erases all Cofee logs, disables USB drives, and contaminates or spoofs a variety of MAC addresses to muddy forensic tracks. The hackers say that later releases of the program will allow computer owners to remotely lock down their machine once they detect that it has fallen into law enforcement hands. The hackers, however, have not released source code for the program, which would make it easy for anyone to see if the program contains malware that might also harm a computer or allow the attackers to take control of it.
Tuesday, December 1, 2009
White House's Ties to Health Care Industry Deeper Than Visitor Records Show | Politics | AlterNet
If there's one thing the political wing of the United Shakedown Artists we know more accurately today as the global finance oligarchy and corporate rule is that people really do get very emotionally attached to images of celebrity and the popular appeal of psycophancy, is that they've got the art and science of developing effective propaganda bullet points that people really couldn't care less about . What is a public oppinion? The GOP rank and file are going on as before, however they do it in a mindless haze imported from the global conspiracy theory clen blah blah
durnk typing above.
on for for as long as I can remember,
White House's Ties to Health Care Industry Deeper Than Visitor Records Show | Politics | AlterNet
durnk typing above.
on for for as long as I can remember,
White House's Ties to Health Care Industry Deeper Than Visitor Records Show | Politics | AlterNet
Subscribe to:
Posts (Atom)