-
Digital Forensics / Media forensics / Network Forensics April 19, 2018
READ MOREAll forensic investigators need a travel forensics kit. This is a set of equipment you can grab at a short notice that should cover “most” eventualities when at an engagement. Typical components are a forensic workstation with the relevant software, write blockers, network taps, external storage, and other tools.
- READ MORE
Moloch is a great network forensics tool created by the network team at AOL (https://molo.ch/). It captures and stores network traffic (stored as pcap files) and then parses them and indexes them into an elasticsearch instance. This index is then exposed via a web interface. The system captures all data sent to the monitoring interface […]