Retrieving
Evidence
From Digital
Devices
VELAYUTHAM SELVARAJ MSC
DIGITAL FORENSICS AND
CYBER CRIME ANALYSIS
A little brag
CEO OF
TWINETCH
SOLUTIONS
CO FOUNDER
TALENTED
PENTESTERS
HUT
TECHNICAL
AUTHOR GB
HACKERS
HACKERSDAY
CHAPTER
CHENNAI
METHODOLOGY
COLLECTION
EXAMINATION
ANALYSIS
REPORTING
DEFEATING ENCRYPTION
 Password Guess (Similar to known plaintext)
 Dictionary
 Educated Guess
 Brute Force
 Scavenge Password
 Physical Search
 Logical Search
 Network Sniff
 Forensics analysis of physical memory
 Virtual introspection in digital forensic analysis
 Distributed password cracking
DEMO ON TRYECRYPT
 PLEASE INSTALL THESE TOOLS TO WINDOWS 7 64 bit IN VMWARE & iNSTALL VMWARE TOOLS
 OS FORENSICS (TRIAL VERSION)
 VOLATILITY (WINDOWS STANDALONE EXECUTABLE)
 FIREFOX AND CHROME BROWSER
 EXCERCISE FILE
 DECRYPTION KEY - !XtjqNLVoD2j0LXYHL4Psrkvd1X0aixcSSZ4d3FwQoKQ
 CONTAINER
 DECRYPTION KEY - !1zvVDtWxBfnLf0-So6YLsqEWwx-z6smrnCW3tiFGWik
 TRUECRYPT 1.21
 DECRYPTION KEY - !2pAcfRDX8T8ambOjl0xwnEWlfEZhyaGTOBdkUJOwmuE
Thank you
 Fb.com/lawway09
 Twitter.com/vela1987
 Llinkedin.com/in/velayutham-
selvaraj

Retrieving Evidence From Digital Devices

  • 1.
    Retrieving Evidence From Digital Devices VELAYUTHAM SELVARAJMSC DIGITAL FORENSICS AND CYBER CRIME ANALYSIS
  • 2.
    A little brag CEOOF TWINETCH SOLUTIONS CO FOUNDER TALENTED PENTESTERS HUT TECHNICAL AUTHOR GB HACKERS HACKERSDAY CHAPTER CHENNAI
  • 3.
  • 4.
    DEFEATING ENCRYPTION  PasswordGuess (Similar to known plaintext)  Dictionary  Educated Guess  Brute Force  Scavenge Password  Physical Search  Logical Search  Network Sniff  Forensics analysis of physical memory  Virtual introspection in digital forensic analysis  Distributed password cracking
  • 5.
    DEMO ON TRYECRYPT PLEASE INSTALL THESE TOOLS TO WINDOWS 7 64 bit IN VMWARE & iNSTALL VMWARE TOOLS  OS FORENSICS (TRIAL VERSION)  VOLATILITY (WINDOWS STANDALONE EXECUTABLE)  FIREFOX AND CHROME BROWSER  EXCERCISE FILE  DECRYPTION KEY - !XtjqNLVoD2j0LXYHL4Psrkvd1X0aixcSSZ4d3FwQoKQ  CONTAINER  DECRYPTION KEY - !1zvVDtWxBfnLf0-So6YLsqEWwx-z6smrnCW3tiFGWik  TRUECRYPT 1.21  DECRYPTION KEY - !2pAcfRDX8T8ambOjl0xwnEWlfEZhyaGTOBdkUJOwmuE
  • 6.
    Thank you  Fb.com/lawway09 Twitter.com/vela1987  Llinkedin.com/in/velayutham- selvaraj