Ethical Hacking Training at InfoSec Institute

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Computer Forensics Computer-Forensics
[Top] [All Lists]

Advice on transferring forensic image

Subject: Advice on transferring forensic image
Date: Tue, 04 Dec 2007 13:35:16 +0100
Folks,

one of my cases has been going on for almost half a year
now. Unfortunately, I now do have the need to transfer
the forensic dd image to another target disk which will
then become the case disk.

Is there anything other than the usual stuff (securely
erase the 'new' disk, create checksums before copying,
transfer the image using dcfldd, create checksums after
copying, securely erase the 'old' disk, document the whole
process) which needs to be done?

Am I missing anything important here?

Cheers,

        Stefan.

--------------------------------------------------------
T.I.S.P.  -  Lassen Sie Ihre Qualifikation zertifizieren
vom 25.-29.02.2008 - http://www.secorvo.de/college/tisp/
--------------------------------------------------------
Stefan Kelm
Security Consultant

Secorvo Security Consulting GmbH
Ettlinger Strasse 12-14, D-76137 Karlsruhe
Tel. +49 721 255171-304, Fax +49 721 255171-100
stefan.kelm@secorvo.de, http://www.secorvo.de/
PGP: 87AE E858 CCBC C3A2 E633 D139 B0D9 212B

Mannheim HRB 108319, Geschaeftsfuehrer: Dirk Fox

-----------------------------------------------------------------
Uncover stealthy Trojans and malware in corporate web traffic
Anti-virus and URL filtering solutions provide only a limited solution to 
evasive crimeware.
Qualify for a free audit for enterprises
www.finjan.com/RUSafe

<Prev in Thread] Current Thread [Next in Thread>
  • Advice on transferring forensic image, Stefan Kelm <=