Skip to content

Commit

Permalink
Removed dead references (#196)
Browse files Browse the repository at this point in the history
  • Loading branch information
joachimmetz authored Nov 29, 2023
1 parent d1a3d8b commit f062ad8
Show file tree
Hide file tree
Showing 32 changed files with 130 additions and 260 deletions.
4 changes: 2 additions & 2 deletions docs/cell_phone_forensics.md
Original file line number Diff line number Diff line change
Expand Up @@ -90,7 +90,7 @@ Investigative Support
* [Creating a Cell Phone Investigation Toolkit: Basic Hardware and Software Specifications](http://www.search.org/files/pdf/CellphoneInvestToolkit-0806.pdf)
* [E-Evidence.Info Mobile Forensic Tools](http://www.e-evidence.info/cellular.html)
* [ForensicFocus.com(Practitioners Forum)](https://forensicfocus.com)
* [Mobile-Forensics.com (Research Forum for Mobile Device Forensics)](http://www.Mobile-Forensics.com)
* [Mobile-Forensics.com (Research Forum for Mobile Device Forensics)](http://www.mobile-forensics.com/)
* [Phone-Forensics.com (Advanced Forum for Practitioners)](http://www.Phone-Forensics.com)
* [TREW Mobile Telephone Evidence (Mobile Telephone Evidence Practitioner Site)](http://trewmte.blogspot.com)

Expand All @@ -104,6 +104,6 @@ Training

* [SANS: FOR585: Smartphone Forensic Analysis In-Depth](https://www.sans.org/cyber-security-courses/advanced-smartphone-mobile-device-forensics/)
* [Teel Technologies Smartphone training](http://www.teeltech.com/mobile-device-forensics-training/)
* [Mobile-Forensics.com (Research Forum for Mobile Device Forensics)](http://www.Mobile-Forensics.com)
* [Mobile-Forensics.com (Research Forum for Mobile Device Forensics)](http://www.mobile-forensics.com/)
* [Paraben-Forensics.com (Paraben's Handheld Forensic Training Classes)](https://paraben.com/dfir-training-3/)
* [Micro Systemation Training (Mobile Forensics Training)](https://www.msab.com/)
2 changes: 1 addition & 1 deletion docs/cloud_forensics_research.md
Original file line number Diff line number Diff line change
Expand Up @@ -97,7 +97,7 @@ location="Monterey, CA",
`volume = {9},`
`year = {2012},`
`pages = {S90--S98},`
` url="`[`http://ww.cs.umbc.edu/~dykstra/DFRWS_Dykstra.pdf`](http://ww.cs.umbc.edu/~dykstra/DFRWS_Dykstra.pdf)`"`
` url="`[`https://www.sciencedirect.com/science/article/pii/S1742287612000266`](https://www.sciencedirect.com/science/article/pii/S1742287612000266)`"`

</bibtex>

Expand Down
75 changes: 1 addition & 74 deletions docs/conferences.md
Original file line number Diff line number Diff line change
Expand Up @@ -21,141 +21,82 @@ Research conferences that are related to digital investigation and forensics.
American Academy of Forensic Science
<https://www.aafs.org/>

<!-- -->

BlackHat Federal Briefings & Training
<https://www.blackhat.com/html/bh-link/briefings.html>

<!-- -->

BSides Security (various locations)
<http://www.securitybsides.com/>

<!-- -->

CanSecWest
<https://www.secwest.net/>

<!-- -->

Computer Technology Investigators Network (CTIN) Digital Forensics Conference
<https://ctin.org/>

<!-- -->

Conference on Digital Forensics, Security and Law
<https://www.digitalforensics-conference.org/>

<!-- -->

Department of Defense CyberCrime Conference (Discontinued - now US Cyber Crime Conference)

<!-- -->

Detection of Intrusions and Malware & Vulnerability Assessment (DIMVA)
<https://www.dimva.org/>

<!-- -->

Digital Forensics Research Conference (DFRWS)
<https://dfrws.org/>

<!-- -->

e-Forensics (Last found in 2010)
<http://ww82.e-forensics.eu>

<!-- -->

EuroForensics Forensics Sciences, Cyber Security and Surveillance Technologies Conference and Exhibition (With ending of FSS, this seems to be a trade show now)
<https://forensicseuropeexpo.com/>

<!-- -->

FIRST Conference
<https://www.first.org/conference/>

<!-- -->

French-Speaking Days on Digital Investigations - Journées Francophones de l'Investigation Numérique
<http://www.afsin.org/>

<!-- -->

IEEE Workshop on Information Forensics and Security
<https://project.inria.fr/wifs2017/>

<!-- -->

IFIP International Information Security Conference
<https://www.ifipsec.org/>

<!-- -->

IFIP WG 11.9 International Conference on Digital Forensics
<http://www.ifip119.org/Conferences/>

<!-- -->

Information Hiding Conference
<http://www.ihmmsec.org/>

<!-- -->

International Conference on Availability, Reliability and Security
<https://www.ares-conference.eu/>

<!-- -->

[International Conference on Digital Forensics and Cyber Crime (ICDF2C)](https://d-forensics.eai-conferences.org/)

<!-- -->

International Conference on IT-Incident Management & IT-Forensics
<https://www.imf-conference.org/>

<!-- -->

International Symposium on Recent Advances in Intrusion Detection
<https://www.raid2014.eu/>

<!-- -->

Open Source Software for Computer and Network Forensics (Last seen in 2008)
<https://conferenze.dei.polimi.it/>

<!-- -->

Open Web Application Security Project
<https://owasp.org/>

<!-- -->

Security OPUS Information Security Conference (Last seen 2010)
<http://www.securityopus.com/index.php>

<!-- -->

Sleuthkit and Open Source Digital Forensics Conference (OSDFCon)
<https://www.osdfcon.org/>

<!-- -->

USENIX Annual Technical Conference
<https://www.usenix.org/conferences>

<!-- -->

USENIX Security Symposium
<https://www.usenix.org/conferences>

<!-- -->

Virus Bulletin Conference
<https://www.virusbulletin.com/conference/vb2022/>

<!-- -->

International Workshop on Cyber Forensics and Advanced Threat Investigations
<https://cfati.conceptechint.net/index.html>

Expand All @@ -164,42 +105,28 @@ International Workshop on Cyber Forensics and Advanced Threat Investigations
Enfuse Conference - formerly Computer and Enterprise Investigations Conference (CEIC)
<https://blogs.opentext.com/otbus/>

<!-- -->

The First Forensic Forum (F3)
<https://f3.org.uk/>

<!-- -->

HTCIA International Training Conference and Expo
<https://www.htciaconference.org/>

<!-- -->

IACIS Computer Forensic Training Event
<https://www.iacis.com/>

<!-- -->

PFIC (Parabin Corporation)
<https://pfic-conference.com/>

<!-- -->

Regional Computer Forensics Group Conference (RCFG)
<http://www.rcfg.org>

<!-- -->

SANS Digital Forensics & Incident Response Summit & Training
<https://www.sans.org/cyber-security-summit/>

<!-- -->

Techno-Security Conference
<https://techsec.com/>

# See also

* [Upcoming events](upcoming_events.md)
* [Journals](journals.md)
* [Upcoming events](upcoming_events.md)
6 changes: 3 additions & 3 deletions docs/extended_file_system_(ext).md
Original file line number Diff line number Diff line change
Expand Up @@ -31,9 +31,9 @@ file system.
### Ext2

* [Wikipedia article on ext2](https://en.wikipedia.org/wiki/Ext2)
* [Layout of the ext2 Filesystem](http://www.nongnu.org./ext2-doc/ext2.html)
* [Linux Ext2fs Undeletion mini-HOWTO](http://fedora.linuxsir.org/doc/ext2undelete/Ext2fs-Undeletion.html)
* [Using ext2 on other systems](http://blog.boreas.ro/2007/11/ext2-filesystem-for-linux-and-solaris.html)
* [Layout of the ext2 Filesystem](https://www.nongnu.org/ext2-doc/ext2.html)
* [Linux Ext2fs Undeletion mini-HOWTO](https://tldp.org/HOWTO/Ext2fs-Undeletion-1.html)
* [Ext2 Filesystem for Linux and Solaris](http://blog.boreas.ro/2007/11/ext2-filesystem-for-linux-and-solaris.html), by Cmihai, November 3, 2007

### Ext3

Expand Down
3 changes: 1 addition & 2 deletions docs/file_format_identification.md
Original file line number Diff line number Diff line change
Expand Up @@ -73,9 +73,8 @@ See:
- Online
- Based on machine learning techniques, uses multiple file features
- Uses novel signatures computed from file format samples
- Identifications are linked to <http://fileformats.archiveteam.org/wiki/Main_Page>
- Identifications are linked to the [file formats archive](http://fileformats.archiveteam.org/wiki/Main_Page)
ontology
- <http://ec2-52-37-126-112.us-west-2.compute.amazonaws.com/falstaff>

## Apache Tika

Expand Down
5 changes: 2 additions & 3 deletions docs/forensic_corpora.md
Original file line number Diff line number Diff line change
Expand Up @@ -188,9 +188,8 @@ available a series of [text collections](https://trec.nist.gov//data.html).

## American National Corpus

The [American National Corpus (ANC)
project](http://www.americannationalcorpus.org/) is creating a massive
collection of American english from 1990 onward. The goal is to create a
The [American National Corpus (ANC) project](https://anc.org/) is creating
a collection of American english from 1990 onward. The goal is to create a
corpus of at least 100 million words that is comparable to the British
National Corpus.

Expand Down
9 changes: 0 additions & 9 deletions docs/forensicswiki_feedburner_feed.md

This file was deleted.

8 changes: 4 additions & 4 deletions docs/header.md
Original file line number Diff line number Diff line change
@@ -1,8 +1,8 @@
---
tags:
- No Category
- Articles that need to be expanded
---
For now, see "File Signatures" here:

``[`https://en.wikipedia.org/wiki/List_of_file_signatures`](https://en.wikipedia.org/wiki/List_of_file_signatures)
``[`http://filesignatures.net/index.php?page=all`](http://filesignatures.net/index.php?page=all)
## External Links

* [Wikipedia: List of file signatures](https://en.wikipedia.org/wiki/List_of_file_signatures)
50 changes: 22 additions & 28 deletions docs/helix3.md
Original file line number Diff line number Diff line change
@@ -1,15 +1,13 @@
---
tags:
- Live CD
- Tools
- Linux
- Disk Imaging
- System Analysis
- Disk Imaging
- Linux
- Live CD
- System Analysis
- Tools
---
**Helix3** is a [Live CD](live_cd.md) built on top of
[Ubuntu](ubuntu.md). It focuses on [incident
response](incident_response.md) and [computer
forensics](computer_forensics.md).
**Helix3** is a [Live CD](live_cd.md) built on top of [Ubuntu](ubuntu.md). It
focuses on [incident response](incident_response.md) and [computer forensics](computer_forensics.md).

According to Helix3 Support Forum, e-fense is no longer planning on
updating the free version of Helix.
Expand All @@ -22,41 +20,37 @@ Response and forensic techniques.

### Bootable Side

- [The Sleuth Kit](the_sleuth_kit.md)
- [dc3dd](dc3dd.md)
- [dcfldd](dcfldd.md)
- [LinEn](linen.md)
- [aimage](aimage.md)
* [aimage](aimage.md)
* [dc3dd](dc3dd.md)
* [dcfldd](dcfldd.md)
* [LinEn](linen.md)
* [The Sleuth Kit](the_sleuth_kit.md)

*and others.*

### Windows Side

- [FTK Imager](ftk_imager.md)
- [mdd](mdd.md)
- [win32dd](windd.md)
- winen
- WFT
- IRCR
* [FTK Imager](ftk_imager.md)
* IRCR
* [mdd](mdd.md)
* WFT
* [win32dd](windd.md)
* winen

*and others.*

Windows side can be used to scan for pictures on a live system.

## Forensic Issues

- Helix3 will automount ext3 and ext4 file systems during the boot process and
* Helix3 will automount ext3 and ext4 file systems during the boot process and
recover them if required (bug in *initrd* scripts);
- Helix3 can automount some storage devices like firewire devices and
* Helix3 can automount some storage devices like firewire devices and
MMC in read/write mode;
- Helix3 relies on file system drivers to provide write protection,
* Helix3 relies on file system drivers to provide write protection,
mounting some file system types (e.g. [XFS](xfs.md) will
result in several data writes to the original media.

## See Also

- [Helix3 Pro](helix3_pro.md)

## External Links

- [Helix3 CE Forum](http://forum.charlestendell.com)
* [Helix3 Pro](helix3_pro.md)
2 changes: 0 additions & 2 deletions docs/hiberfil.sys.md
Original file line number Diff line number Diff line change
Expand Up @@ -42,8 +42,6 @@ from the multiple levels of slack space within them.

* [Windows hibernation file for fun & profit](http://msuiche.net/con/bhusa2008/Windows_hibernation_file_for_fun_%27n%27_profit-0.6.pdf),
by Matthieu Suiche
* [Hibernation File Format](http://web17.webbpro.de/downloads/Hibernation%20File%20Attack/Hibernation%20File%20Format.pdf),
by Peter Kleissner, 2009
* [Microsoft Hibernation Files](https://code.google.com/archive/p/volatility/wikis/HiberAddressSpace.wiki), by
[the Volatility project](volatility_framework.md)
* [Hibernation Recon](https://arsenalrecon.com/apps/hibernation-recon/)
Expand Down
2 changes: 1 addition & 1 deletion docs/jtag_and_chip-off_tools_and_equipment.md
Original file line number Diff line number Diff line change
Expand Up @@ -17,7 +17,7 @@ made for equivalent tools and equipment.*
| Item | Info | Estimated Cost (CAD) |
|:-------------------------------------------------------------|---------------------------------------------------------------------------------------------------------------------------------------------------------------------------|----------------------|
| iSeasamo Phone Opening Tool | <https://www.fonefunshop.com/> | £6 |
| Carton SPZT-50PG Microscope (optional: w/trinocular) | <http://valleymicroscope.com/shop/spz-50pg/> | \$1200 |
| Carton SPZT-50PG Microscope (optional: w/trinocular) | | \$1200 |
| Xytronic 988D Solder Rework Station | <https://www.howardelectronics.com/> | \$300 |
| Weller WES51 Solder Station | sourced locally (Electronics shop) | \$100 |
| Xytronic LF-852D Hot Air Station | <https://www.howardelectronics.com/> | \$225 |
Expand Down
2 changes: 0 additions & 2 deletions docs/jump_lists.md
Original file line number Diff line number Diff line change
Expand Up @@ -82,8 +82,6 @@ binary format segments.
by Michael Dunn, May 19, 2009
* [Jump Lists in Windows 7 and Possible Forensic Implementations](http://mikeahrendt.blogspot.com/2011/04/jump-lists-in-windows-7-and-possible.html),
by Mike Ahrendt, April 3, 2011
* [The Forensic Value of the Windows 7 Jump List](http://www.alexbarnett.com/jumplistforensics.pdf),
by Alexander G Barnett, April 18, 2011
* [Forensic Examination of Windows 7 Jump Lists](https://www.slideshare.net/ctin/windows-7-forensics-jump-listsrv3public),
by Troy Larson, June 6, 2011
* [Jump List Analysis](https://windowsir.blogspot.com/2011/08/jump-list-analysis.html),
Expand Down
Loading

0 comments on commit f062ad8

Please sign in to comment.