On TechRepublic: Windows 7: Slower to boot than Vista?
BNET Business Network:
BNET
TechRepublic
ZDNet

By Liam Tung , ZDNet Australia
Posted on ZDNet News: Mar 6, 2008 8:19:00 AM

Australian university students have developed a Linux-based data forensics tool to help police churn through a growing backlog of computer-related criminal investigations.

The tool was developed by students from Edith Cowan University's School of Computing and Information Sciences and will help the Western Australian Police Computer Crime Squad process their forensic investigations.

Called Simple (for Simple Image Preview Live Environment), the software allows investigators to view and acquire forensic data at the scene of the crime without compromising the integrity of data as it is collected.

"It's a Linux Live CD that we have built from the ground up. We customized the kernel and the underlying operating system so that when it runs it's incapable of writing to the hard disk or any other storage," Peter Hannay, the software developer behind the forensic acquisition tool told ZDNet Australia.

The operating system has had some features removed so that investigators can view data without affecting the host machine.

"We stripped out a large amount of functionality because we want to maintain the integrity of data collected, so we removed all network support and the ability to write to disk. Also, if for some reason a disk is writeable, the system will halt automatically," he added.

"Our software will launch on top of the operating system and will interrogate the hard disk, locate all the images on system and then present those to the operator."

The Simple tool searches the system for specific file types like MPEG or JPEG files, saving time on the often lengthy search process.

Hoping to achieve even greater automation during the collection of evidence, Simple will soon be equipped with skin-tone analysis capabilities to help detect relevant files.

The idea for the tool first came when the Western Australian Police approached the university in 2006, since its investigators could not handle the amount of computer forensic data requests, which relate mostly to child pornography and bestiality.

Normally police need to take the PCs back to the station to begin acquiring forensic data, but with this tool, according to Hannay, police will be able to collect the data on the spot.

Liam Tung of ZDNet Australia reported from Sydney.

©2007 CNET Networks, Inc. All rights reserved. CNET , CNET.com , and the CNET logo are registered trademarks of CNET Networks, Inc. Used by permission.

SponsoredWhite Papers, Webcasts, and Downloads

  • Talkback
  • Most Recent of 30 Talkback(s)
Here's some backup... from 2003 no less...
NMR spectroscopy data recovery method and apparatus
US Patent Issued on October 28, 2003

http://www.patentstorm.us/patents/6639405-description.html


imagine the possibilities... (Read the rest)
Posted by: itsupport@... Posted on: 03/26/08 You are currently: a Guest | | Terms of Use
Linux tool speeds up computer forensics for cops  Loverock Davidson | 03/06/08
Nah  zkiwi | 03/06/08
Like?  odubtaig | 03/06/08
Where did it say  Boot_Agnostic | 03/07/08
Hey there, Lovey.  mattnico | 03/06/08
How to spot a troll  voska1 | 03/07/08
He missed the point: Does NOT write to ANY harddisk ! (nt)  hkommedal | 03/07/08
He missed the point where NOTHING is written to  hkommedal | 03/07/08
You missed the point big time...live linux cd  blc1839 | 03/08/08
DOes not run on top of Windows  rapt0r | 03/08/08
Right, Does NOT Run Under Windows  hforman@... | 03/14/08
WIndows Live CD  rapt0r | 03/08/08
Winternals writes to disk  ppelleg@... | 03/10/08
Do you have a CD/DVD that will run Windows  hkommedal | 03/07/08
What a tool  rapt0r | 03/08/08
What software are you talking about?  clareJ | 03/12/08
RE: Linux tool speeds up computer forensics for cops  galileon | 03/06/08
RE: Linux tool speeds up computer forensics for cops  markkerzner | 03/06/08
If it helps...  mattnico | 03/06/08
thank you  markkerzner | 03/10/08
RE: Linux tool speeds up computer forensics for cops  terry flores | 03/06/08
The advantage was that the police can  hkommedal | 03/07/08
RE: Linux tool speeds up computer forensics for cops  brettze | 03/10/08
RE: Linux tool speeds up computer forensics for cops  preilly@... | 03/10/08
Actually this project sounds like Helix  preilly@... | 03/10/08
RE: Linux tool speeds up computer forensics for cops  rapt0r | 03/11/08
Edumacate yourself before you spew nonsense...  itsupport@... | 03/11/08
use your brain for somthing other then sitting on.  blaze1024 | 03/14/08
Burnout1024...  itsupport@... | 03/17/08
Here's some backup... from 2003 no less...  itsupport@... | 03/26/08

What do you think?

advertisement
advertisement

White Papers, Webcasts, and Downloads