[cryptome] Computer Forensics: Live System Analysis: Discovering Encrypted Disk Volumes

  • From: douglasrankine <douglasrankine@xxxxxxxxxxx>
  • To: "cryptome@xxxxxxxxxxxxx" <cryptome@xxxxxxxxxxxxx>
  • Date: Tue, 18 Aug 2020 12:48:50 +0100

see url: https://blog.elcomsoft.com/2020/07/live-system-analysis-discovering-encrypted-disk-volumes/

Can't even hide an encrypted disk these days...Just download a piece of software from this site and put it on a usb stick...and away you go...

Interesting article...

Quote<<<

The wide spread use of full-disk encryption makes live system analysis during incident response a challenge, but also an opportunity. A timely detection of full-disk encryption or a mounted crypto container allows experts take extra steps to secure access to encrypted evidence before pulling the plug. What steps are required and how to tell if the system is using full-disk encryption? “We have a tool for that”.

>>>End of Quote


Other related posts:

  • » [cryptome] Computer Forensics: Live System Analysis: Discovering Encrypted Disk Volumes - douglasrankine