<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Computer Forensics Institute&#187; Computer Forensics Institute</title>
	<atom:link href="http://www.computer-forensics-institute.org/category/computer-forensics-software/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.computer-forensics-institute.org</link>
	<description>Computer Forensics Institure Learning Centers</description>
	<lastBuildDate>Fri, 03 Sep 2010 18:19:03 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>YouTube Video &#8211; EnCase Computer Forensics Demo</title>
		<link>http://www.computer-forensics-institute.org/computer-forensics-software/youtube-video-encase-computer-forensics-demo/</link>
		<comments>http://www.computer-forensics-institute.org/computer-forensics-software/youtube-video-encase-computer-forensics-demo/#comments</comments>
		<pubDate>Tue, 12 Jan 2010 04:18:44 +0000</pubDate>
		<dc:creator>steve</dc:creator>
				<category><![CDATA[Computer Forensics Software]]></category>
		<category><![CDATA[Computer Forensics]]></category>
		<category><![CDATA[encase]]></category>
		<category><![CDATA[youtube video]]></category>

		<guid isPermaLink="false">http://www.computer-forensics-institute.org/?p=12</guid>
		<description><![CDATA[EnCase Demo Here is a good intro demo on what EnCase can do as a computer forensics software package. Take a look and let me know what you think about it. Is EnCase the best tool out there for Computer Forensics? Would you recommend a different tool?]]></description>
			<content:encoded><![CDATA[<p>EnCase Demo<br />
Here is a good intro demo on what EnCase can do as a computer forensics software package.  Take a look and let me know what you think about it.</p>
<p><object width="425" height="344"><param name="movie" value="http://www.youtube.com/v/O4ce74q2zqM&#038;hl=en_US&#038;fs=1&#038;"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/O4ce74q2zqM&#038;hl=en_US&#038;fs=1&#038;" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"></embed></object></p>
<p>Is EnCase the best tool out there for Computer Forensics?  Would you recommend a different tool?</p>
]]></content:encoded>
			<wfw:commentRss>http://www.computer-forensics-institute.org/computer-forensics-software/youtube-video-encase-computer-forensics-demo/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>News Bits: Hackers Release DECAF Tool &#8211; Blocks COFEE Computer Forensics Tool</title>
		<link>http://www.computer-forensics-institute.org/computer-forensics/news-bits-hackers-release-decaf-tool-blocks-cofee-computer-forensics-tool/</link>
		<comments>http://www.computer-forensics-institute.org/computer-forensics/news-bits-hackers-release-decaf-tool-blocks-cofee-computer-forensics-tool/#comments</comments>
		<pubDate>Mon, 11 Jan 2010 01:12:08 +0000</pubDate>
		<dc:creator>steve</dc:creator>
				<category><![CDATA[Computer Forensics]]></category>
		<category><![CDATA[Computer Forensics Software]]></category>

		<guid isPermaLink="false">http://www.computer-forensics-institute.org/computer-forensics/10</guid>
		<description><![CDATA[I just saw this on wired.com.&#160; It will be interesting to see how people deal with this &#8230; Hackers Brew Self-Destruct Code to Counter Police Forensics &#124; Threat Level &#124; Wired.com Hackers have released an application designed to thwart a Microsoft-packaged forensic toolkit used by law enforcement agencies to examine a suspect’s hard drive during [...]]]></description>
			<content:encoded><![CDATA[<p>I just saw this on wired.com.&nbsp; It will be interesting to see how people deal with this &#8230;</p>
<p><a href="http://www.wired.com/threatlevel/2009/12/decaf-cofee?utm_source=feedburner&amp;utm_medium=feed&amp;utm_campaign=Feed%3A+wired%2Findex+%28Wired%3A+Index+3+%28Top+Stories+2%29%29">Hackers Brew Self-Destruct Code to Counter Police Forensics | Threat Level | Wired.com</a><br />
<blockquote>Hackers have released an application designed to thwart a Microsoft-packaged forensic toolkit used by law enforcement agencies to examine a suspect’s hard drive during a raid.</p>
<p>The hacker tool, dubbed DECAF, is designed to counteract the Computer Online Forensic Evidence Extractor, aka COFEE. The latter is a suite of 150 bundled, off-the-shelf forensic tools that run from a script. Microsoft combined the programs into a portable tool that can be used by law enforcement agents in the field before they bring a computer back to their forensic lab. The script runs on a USB stick that agents plug into the machine.</p>
<p>The tools scan files and gather information about activities performed on the machine, such as where the user surfed on the internet or what files were downloaded.</p>
<p>Someone submitted the COFEE suite to the whistleblower site Cryptome last month, prompting Microsoft lawyers to issue a take-down notice to the site. The tool was also being distributed through the Bit Torrent file sharing network.</p>
<p>This week two unnamed hackers released DECAF, an application that monitors a computer for any signs that COFEE is operating on the machine.</p></blockquote>
<p>Technorati Tags: <a class="performancingtags" href="http://technorati.com/tag/cofee" rel="tag">cofee</a>, <a class="performancingtags" href="http://technorati.com/tag/decaf" rel="tag">decaf</a>, <a class="performancingtags" href="http://technorati.com/tag/computer%20forensics" rel="tag">computer forensics</a>, <a class="performancingtags" href="http://technorati.com/tag/computer%20forensics%20investigation" rel="tag">computer forensics investigation</a>, <a class="performancingtags" href="http://technorati.com/tag/wried.com" rel="tag">wried.com</a></p>
<div class="zemanta-pixie"><img class="zemanta-pixie-img" alt="" src="http://img.zemanta.com/pixy.gif?x-id=dd0339a7-314b-87d3-b6cc-d8f94e4f3c6e" /></div>
]]></content:encoded>
			<wfw:commentRss>http://www.computer-forensics-institute.org/computer-forensics/news-bits-hackers-release-decaf-tool-blocks-cofee-computer-forensics-tool/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

