[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <754924961001262008u2521912dm9062d3a208b096b5@mail.gmail.com>
Date: Wed, 27 Jan 2010 09:53:55 +0545
From: Bipin Gautam <bipin.gautam@...il.com>
To: Kurt Buff <kurt.buff@...il.com>
Cc: full-disclosure <full-disclosure@...ts.grok.org.uk>
Subject: Re: Disk wiping -- An alternate approach?
Enough noise, Lets wrap up:
Someone said: "Forensics requires more than merely finding a phrase or
file on a hard drive - it requires establishing the context. If a
court accepts evidence without that context, then the defendant should
appeal on the basis of having an incompetent lawyer."
So, any evidence/broken-text/suspicious phrases etc found in a
computer "without meta-data" maybe USELESS........... REMEMBER.
Having a normal OS with forensic signature ZERO would be a simple yet
powerful project. Programmers??? it isnt difficult work..... few
months, 1 person project.
Worm defense is smart as well as deadlock at times, the prospective i
presented can be used as a FALLBACK at times.
Maybe something like Alice/chatterbox run through the
free/slack/etc... space of your 1 TB harddisk is a intellectual dDoS!
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
Powered by blists - more mailing lists