Showing newest posts with label live forensics. Show older posts
Showing newest posts with label live forensics. Show older posts

Thursday, October 30, 2008

Memoryze

Info about a new memory analysis tool has been hitting a couple of the listserves. I haven't check it out yet, but would like to soon.

http://www.mandiant.com/software/memoryze.htm

Here's a review:
http://www.darkreading.com/blog/archives/2008/10/memoryze_this.html?cid=RSSfeed_DR_ALL?cid=nl_DR_DAILY_T

Tuesday, October 28, 2008

Live Forensics

The days of performing only traditional “dead” forensics on a host after a security incident are over.

A shift to “live” forensics and incident response investigations is underway, with a round of new tools focused specifically on collecting volatile data and memory analysis, and forensics experts demonstrating new ways to leverage these tools to fight malware and cybercrime at the recent SANS WhatWorks in Forensics and Incident Response Summit.

Read more from Dark Reading