Forensic Data Recovery and File Carving
Author: Jeremy Martin
32264 View
10m 7s Lenght
132 Rating
Forensic Recovery 101. This episode covers ways of recovering data with a budget using open source tools in Linux. Recover data to analyze later without destroying the evidence.
Comments
-
Some nice pictures on that USB worth recovering
-
Don't recall if you explicitly mentioned this, but it's always a good idea to get a MD5 hash of the original evidence after attaching it to a write blocker before making a copy. Then take that MD5 and compare it to the MD5 of the copy. Great Video!
-
ok so how do you put data into image files without a passphrase or password on linux?
-
linux or kali linux
-
The only downside to using Open-Source software is that it is inadmissible in court.
-
can you recommend any not so price heavy write blockers? c:
-
Yup 250gbs of time
-
what version of linux?
-
Completely free. That is the beauty of Linux
-
What software will I have to buy?
-
Great video - thank you for sharing.
which tools you are using ?