Monday 5 March 2007

Sunday 4 March 2007

Database forensics used to handle the increasing volume of data in an investigation

webmaster March 4th, 2007

(SELECT * FROM ORACLE_SECURITY) INTERSECT (SELECT * FROM COMPUTER_FORENSICS)

I am interested in forensics applied to Oracle databases but also in Oracle databases applied to forensics which is the other half of the INTERSECTION.

Digital investigations are increasingly having to handle very large datasets as confirmed by a recent posting at security focus below.

http://www.securityfocus.com/brief/448

Additionally Advances in Digital Forensics has a great first chapter on dealing with Terabyte Data Sets in Digital Investigations.

http://www.amazon.com/Advances-Digital-Forensics-International-Information/dp/0387300120

The ability of databases like Oracle to handle very large amounts of data is going to be increasingly useful in digital investigations.

Oracle forensics applied to vulnerability detection

webmaster February 28th, 2007

SANS/GIAC have published my new GSOC on using computer forensics concepts applied to vulnerability detection in Oracle databases and it has gained a place in their Reading Room which is quite an honour.
This is the URL for the GSOC and http://www.giac.org/certified_professionals/listing/gsoc.php

and for the Reading Room http://www.sans.org/reading_room/whitepapers/application/

It gives a taste of what to expect from my book that is due out in a couple of months.

http://www.rampant-books.com/book_2007_1_oracle_forensics.htm