Monday, 5 March 2007
Sunday, 4 March 2007
Database forensics used to handle the increasing volume of data in an investigation
webmaster March 4th, 2007
(SELECT * FROM ORACLE_SECURITY) INTERSECT (SELECT * FROM COMPUTER_FORENSICS)
I am interested in forensics applied to Oracle databases but also in Oracle databases applied to forensics which is the other half of the INTERSECTION.
Digital investigations are increasingly having to handle very large datasets as confirmed by a recent posting at security focus below.
http://www.securityfocus.com/brief/448
Additionally Advances in Digital Forensics has a great first chapter on dealing with Terabyte Data Sets in Digital Investigations.
http://www.amazon.com/Advances-Digital-Forensics-International-Information/dp/0387300120
The ability of databases like Oracle to handle very large amounts of data is going to be increasingly useful in digital investigations.
Oracle forensics applied to vulnerability detection
webmaster February 28th, 2007
SANS/GIAC have published my new GSOC on using computer forensics concepts applied to vulnerability detection in Oracle databases and it has gained a place in their Reading Room which is quite an honour.
This is the URL for the GSOC and http://www.giac.org/certified_professionals/listing/gsoc.php
and for the Reading Room http://www.sans.org/reading_room/whitepapers/application/
It gives a taste of what to expect from my book that is due out in a couple of months.
http://www.rampant-books.com/book_2007_1_oracle_forensics.htm