- Видео 117
- Просмотров 25 317
ArcPoint Forensics
США
Добавлен 28 апр 2020
Learn more about ArcPoint Forensics and our products through our current video set!
Monthly we host a Podcast, Unallocated Space. This is a live conversation about current issues and solutions within the Digital Forensics and Incident Response (DFIR) Community. Learn more about the space from industry-leading experts and passionate individuals supporting the DFIR community.
Monthly we host a Podcast, Unallocated Space. This is a live conversation about current issues and solutions within the Digital Forensics and Incident Response (DFIR) Community. Learn more about the space from industry-leading experts and passionate individuals supporting the DFIR community.
S2: DFIRmas Podcast: Shanon Burgess
DFIRmas Podcast - Episode on Vehicle Digital Forensics with Shanon from Aperture
In this episode of the DFIRmas Podcast, we dive into the fascinating world of vehicle digital forensics with Shanon, a seasoned expert at Aperture. With nearly a decade of experience in recovering and analyzing data from complex systems-including fire-damaged devices and modern vehicles-Shanon brings unique insights into this rapidly growing field.
We explore questions like:
🚗 What makes vehicle forensics unique compared to other areas of digital forensics?
🔍 What critical data can be extracted from systems like infotainment, telematics, and onboard diagnostics?
📡 How have connected cars and autonomous vehicles re...
In this episode of the DFIRmas Podcast, we dive into the fascinating world of vehicle digital forensics with Shanon, a seasoned expert at Aperture. With nearly a decade of experience in recovering and analyzing data from complex systems-including fire-damaged devices and modern vehicles-Shanon brings unique insights into this rapidly growing field.
We explore questions like:
🚗 What makes vehicle forensics unique compared to other areas of digital forensics?
🔍 What critical data can be extracted from systems like infotainment, telematics, and onboard diagnostics?
📡 How have connected cars and autonomous vehicles re...
Просмотров: 9
Видео
S2: DFIRmas Podcast: Debbie Garner
Просмотров 457 часов назад
🎙️ Welcome to the DFIRmas Podcast! This seasonal short series by ArcPoint Forensics, hosted by Amy Moles, brings together industry leaders to share insights and foster growth within the #digitalforensics community. In this episode, Amy is joined by the esteemed Debbie Garner to discuss her groundbreaking efforts in guiding individuals within the digital forensic field toward valuable resources ...
S2: DFIRmas Podcast: John Pizzuro
Просмотров 209 часов назад
Linkedin: www.linkedin.com/in/johnpizzuro/ Raven: www.raven.us 🎙️ Championing the Fight Against Child Exploitation with John Pizzuro In this powerful episode of DFIRmas, we’re joined by John, CEO and co-founder of Raven, a 501(c)4 non-profit lobbying firm dedicated to legislative and policy solutions for combating child trafficking and exploitation. With a career spanning 25 years in the New Je...
S2: DFIRmas Podcast: Derek Eiri
Просмотров 6712 часов назад
In this episode of DFIRmas, we’re joined by Derek Eiri, a Senior Cybersecurity Analyst at a non-profit integrated healthcare system and a seasoned professional in healthcare compliance, privacy, and information security. With a unique blend of experience, Derek shares how his work ensures organizational readiness for incident response and digital forensics while minimizing disruptions to patien...
S2: DFIRmas Podcast: Keven Hendricks
Просмотров 17914 часов назад
Join us on this fascinating episode of DFIRmas as we welcome Keven Hendricks, founder of the Ubivis Project and a leading expert in dark web investigations. Keven shares his unique journey into the world of digital forensics and OSINT, offering an in-depth look at the challenges and triumphs of working in one of the most complex and shadowy corners of the internet. In this conversation, we demy...
S2: DFIRmas Podcast: Alexis Brignoni
Просмотров 12216 часов назад
Instagram: @4n6_abrignoni RUclips: Alexis Brignoni BlueSky: @abrignoni.com Podcast: Digital Forensics Now (DFN) Resources: dfir.pubpub.org www.hexordia.com/blog/gc0vnvj80ogwx724ovu7avzwvjl742 The Importance of Tool Validation with Alexis Brignoni In this episode, we're joined by Alexis Brignoni, a respected voice in the digital forensics community, to unpack the critical topic of Digital Forens...
EASILY RECOVER FILE PASSWORDS WITH ATRIO
Просмотров 11811 месяцев назад
ATRIO can attempt to recover passwords for MS Office documents, PDF, zip/rar/7z, and GPG files. It uses over 14.3 Million unique known passwords and compares the hashes to see if a password match exists. You can add it to the default task queue or run it against specific files by selecting "TRIAGE ONLY". Benefits: - automatically add password recovery to the task queue. No additional software t...
FORENSICALLY WIPE A DRIVE WITH ATRIO
Просмотров 4711 месяцев назад
ATRIO makes it quick and easy to forensically erase a drive. You can select 1 pass or 3 passes with a verification. The three pass option is to the DOD 5220.22-M standard. Verification is displayed to the screen when complete. Benefits: - 1x wipe with 00 to quickly erase a drive. - 3x wipe to the DOD 5220.22-M standard with a verification. - Add a filesystem selection and ATRIO will wipe and th...
RECOVER FILES (CARVE) WITH ATRIO
Просмотров 3611 месяцев назад
Recover deleted files easily. ATRIO makes it easy to recover deleted files by data carving in addition to file system data recovery. To quickly carve a drive select carve entire drive and hit GO. You can carve an entire drive or add carving to the task queue. #dfir #forensics #investigation #digitalforensics #computerforensics #lawenforcement #police #sheriff #specialforces #specialoperations #...
HASH MATCHING WITH ATRIO
Просмотров 2611 месяцев назад
New in Version 1.2.3 ATRIO will import and save your custom hash lists internally. It can also import and process some CSAM hash lists for file matching. Create hash: ATRIO can create a hish list that includes the files that are processed. Match hash: ATRIO can take a list you provide or import and match the hash against the files being processed. Hash Filter: ATRIO can exclude files that match...
FORMATTING DRIVES WITH ATRIO
Просмотров 2511 месяцев назад
Quickly format drives in variety of file system types. Simply select the option and hit GO. ATRIO provides Windows, Mac, and Linux file system types all in one quick access location. ATRIO is a digital forensics multitool designed around automation and portability. It helps speed up your workflow and free up other hardware resources for other tasks. #dfir #forensics #investigation #digitalforen...
7.5 TB - IMAGE DIRECTLY TO ATRIO!
Просмотров 3611 месяцев назад
No destination drive needed. ATRIO can store E01 acquisition images directly to ATRIO and then offload the images later. Benefits include: - The potential for faster imaging. A 512G NVMe drive imaged in 13:06. - ATRIO provides 7.5 Tb of storage for on the go imaging or field work. #dfir #forensics #investigation #digitalforensics #computerforensics #lawenforcement #police #sheriff #specialforce...
EASILY ENCRYPT YOUR DATA
Просмотров 2511 месяцев назад
ATRIO can create an encrypted drive, provide you the password, automatically mount that drive, and store everything that is processed through ATRIO to that encrypted drive. Benefits: - Automation: Select the feature and ATRIO automatically performs all the steps to create the encrypted drive. - ATRIO will automatically recognize a destination drive that it encrypted, automatically mount it and ...
CONVERT .DD TO E01 (AND BACK!)
Просмотров 11111 месяцев назад
Quickly and easily convert a .dd image to an E01 or an E01 to .dd. ATRIO makes it simple to do. Select your conversion option and then hit GO. ATRIO will automatically identify the E01 or .DD on the source drive and then run the conversion to the destination drive. #dfir #forensics #investigation #digitalforensics #computerforensics #lawenforcement #police #sheriff #specialforces #specialoperat...
HOW TO UPDATE ATRIO
Просмотров 3811 месяцев назад
Download the update files to a USB drive. Connect the USB drive to the back of ATRIO. Select SETTINGS - UPDATE ATRIO - GO. - Make sure each needed update is included on the drive. If going from 1.2.2 to 1.2.4 then make sure to download 1.2.3 and 1.2.4 onto the USB drive. - Must be connected to the utility ports in the back of ATRIO. #dfir #forensics #investigation #digitalforensics #computerfor...
EASILY RECOVER DELETED FILES WITH ATRIO
Просмотров 6011 месяцев назад
EASILY RECOVER DELETED FILES WITH ATRIO
EASILY CREATE LIVE BOOT USB WITH ATRIO
Просмотров 15011 месяцев назад
EASILY CREATE LIVE BOOT USB WITH ATRIO
QUICKLY EXTRACT FILES AND RECOVER DELETED DATA WITH ATRIO
Просмотров 6311 месяцев назад
QUICKLY EXTRACT FILES AND RECOVER DELETED DATA WITH ATRIO
TRIAGE MULTIPLE E01/DD IMAGES AUTOMATICALLY WITH ATRIO
Просмотров 3611 месяцев назад
TRIAGE MULTIPLE E01/DD IMAGES AUTOMATICALLY WITH ATRIO
INSTANT REPORTS - SAFE, RAPID USB DRIVE INFO WITH ATRIO
Просмотров 6511 месяцев назад
INSTANT REPORTS - SAFE, RAPID USB DRIVE INFO WITH ATRIO
3 steps to properly connecting a USB device 😁
Просмотров 49Год назад
3 steps to properly connecting a USB device 😁
Data recovery - adding tasks to ATRIOs task queue.
Просмотров 16Год назад
Data recovery - adding tasks to ATRIOs task queue.
Convert RAW (.dd) to E01 and back. Linux and Windows.
Просмотров 1,4 тыс.Год назад
Convert RAW (.dd) to E01 and back. Linux and Windows.
(April fools) NEW! GAME-CHANGING ANNOUNCEMENT
Просмотров 65Год назад
(April fools) NEW! GAME-CHANGING ANNOUNCEMENT
Hey Debbie!
Love this❤
Hey Kevin!
Can create own hash value of pdf file
Hello! Great question! Yes, you can create your own hash value or list of hash values. Additionally, if you have a list already, you can ingest those hash values in to easily filter or match depending on your needs.
I have a pdf file but when I edit the hash value has been changed
@@ajitverma1956 Yes, that’s correct! When you alter the file the hash value changes too. This indicates that the original file has been altered.
Have any solution
I wonder what effect it has on any of the artifacts.
Thank you for the watch and comment! There is no effect on the artifacts. You're adding in all the goodness of EO1...CRC check for data integrity, compression, etc
An easy and off-line way to attempt to recover passwords from the rockyou list for MS Office docs, PDFs, and Zip/rar files. It can be run in-line with the rest od the tasks but if there are a lot of files i suggest selecting files woth passwords to recover and then running those.
Thank you for the inspiring podcast! Dr. Ali's impactful contributions at Champlain College and beyond are truly commendable. Keep up the excellent work, both of you!
P R O M O S M
Awesome episode!
Thank you! We are glad you enjoyed it!
Hashes as well as some CSAM md5s can now be imported and used without a thumb drive.
I've had a 512G NVMe drive image in 13min 6sec when using this feature. It's like having an extra 7.5 TB of high speed NVMe destination drives with you.
Looks like a streamdeck with a computer connected to the underside
We use a keypad similar to a stream deck but there is so much more to it then that. ATRIO is a work horse for DFIR triage and labs :) Let us know if we can get a demo set up to show you all the features! @arcpointforensics.com
This is an airgap process for updating ATRIO. We're working on an automatic update feature that will download updates automatically and eventually, one ATRIO will be able to update another 😊
Its a digital forensics multitool built around automation and simplicity. Making manual or complicated tasks quick and painless.
Quick and painless. Only interested in deleted files.... quicky extract them without the hassle of setting up a profile, importing, parsing, and extracting. This automates and makes it easy.
Quick and painless way to make live boot Linux USB drives on demand!
Makes it simple to copy out files and recover deleted files. The default triage mode will organize files by type and the logical extraction will just copy everything as originally found.
Its super simple to use with just the basic features but there are also a bunch if additional capabilities that you can select and add to the processing.
This is a great way to verify drive details and content while maintaining a read-only status and protecting your computer from malware.
This is really useful if you've got a drive with a bunch of DD or E01 files that need to be triaged. Automate and reduce the number of manual inputs required to process.
I use Google Alerts! I get Google Scholar alerts on papers :)
Awesome!! We are glad we aren't the only ones!
I miss OSDFCon!
Love the shirt! 🎉
Good listen!
Does this product detect any steganography within images?
Thank you for your comment! Currently, ATRIO does not detect any steg within images. If you'd like to jump on a call, we would love to discuss other features and options you are looking for in your digital forensic products. Let us know!
I watched this signed out on my work PC and just had to come here and comment. You gave me a huge belly laugh, thank you!
Love the vids and podcasts.
Thanks..much appreciated! We're getting the podcast running again here in the near future. 😃
Thanks for doing all these vids. I also listen to the podcasts, you just got to keep plugging away, with Atrio, it looks a great tool 👍
Can we just talk about Jared's sick lightsaber skills though?! haha
They are epic! We were impressed too! Who knew he had Jedi level skills!
*promo sm*
Good video spoiled by the zooming in and out. People do this and it's just irritating.
I'm not an editing pro but I thought it added something...I'll keep that in mind for the next time 🙂
Awesome functionality and so easy. What Linux distro is used for the boot disk?
Thanks! It's Kali for now. Eventually we'll have the option to upload and replace the iso with another one 😃
@@arcpointforensics1404 that would be awesome. I would put in my Paladin ISO for the win.
@@AlexisBrignoni That would be good...maybe we should switch it up.
Chicken Riggies!!! So good. Great Podcast!
Not the Ketones 🤣
Great point about how to be a mentee by Jared. Amy is right about mobile btw. 😀 Excellent episode.
Spaghetti is hard to spell sometimes 🤣
😂 so true!
Me thinking spaghetti will be a password in an upcoming CTF... Also me seeing you comment and going - NOPE!
@@hexordia spaghetti123yogurt
I'm most excited for the custom file extensions in this release :)
"...reward the heck out of people who are amazing!" <-- Yes!
"Own your work, do it, don't ask to be micro-managed." <-- Nice.
Awesome podcast! Great work from everyone, very interesting, and very illuminating!
Pizzuro is Amazing!
Thanks for all your efforts, great video.
Great discussion and lots of amazing resources!
I wish more people would watch this channel, keep making the vids, these are important. I enjoy that it's actual digital forensics and not cyber security people who think they are the same. It's good that mental health was mentioned. I enjoyed doing DF, but I couldn't do mentally the stuff you have to see.
Appreciate the support! They are certainly overlapping but having started in cyber I agree, different professions. i.e. define exploitation ;)
@@jaredringenberg Thanks for getting back to me, hope you make more stuff like this. I know it's getting the time etc, but really interesting, thank you.
Great discussion for anyone trying to get into digital forensics. DFIR expert reacts is a great segment!
Thanks! Been a big fan of your CLI vids for a while. I'm definitely excited for more DFIR expert reactions ;)