Forensic laptop sug...
 
Notifications
Clear all

Forensic laptop suggestion

14 Posts
7 Users
0 Reactions
3,681 Views
jaclaz
(@jaclaz)
Illustrious Member
Joined: 18 years ago
Posts: 5133
 

Huge bump, I know, but maybe (just maybe) this little nice project on kickstarter
https://www.kickstarter.com/projects/710967680/companion-case-make-your-pc-portable?
will allow an alternative for "portable" forensic machines.

jaclaz


   
ReplyQuote
EricZimmerman
(@ericzimmerman)
Estimable Member
Joined: 13 years ago
Posts: 222
 

XoticPC sells sager machines which rock. used 3 of them in the past 3 years, zero issues, well built, and you can configure whatever you want in it.

i would not get one of the mainstream vendors for forensic work as you will not be able to pick parts, but thats just me.


   
ReplyQuote
(@btforensics)
Active Member
Joined: 9 years ago
Posts: 14
 

Hi Forensic Focus,

First, I would like to greet everyone a Happy New Year! )

Since it is a new year, it means that there will be a new budget for our company to purchase new stuff that we need for our job )

I did not create a new thread since this thread appears to be the same with my question.

We are looking for new laptops that we can use for digital forensics.

Here are the stuffs that we will be doing with the laptop
Log Reading – IDS Logs, malware logs, firewall Logs, event logs, etc…
Sometimes we read logs around 5GB-10GB in file size

We will also be using the following tools

Harddisk Acquisition Tools
FTK Imager
Encase

Memory Acquisition Tools
Volatility
Redline

VMware Workstation with the following
SIFTTools
This is where we will be using volatility and log2timeline
We also use some other forensic tools built in to SIFT

Windows XP/Windows7 for malware black box testing
Basically this is where we run malware files to check the behavior. It has installed tools for packet sniffing, static analysis, system modification (like drop files, deleted files, registry modification), process monitoring, etc.

Some other stuff that we might do
Installation of cuckoo sandbox

The stuff that we will be doing is not limited to the things that I indicated, we will be doing lots of stuff related with digital forensics so there could be new tools that we need to add in the future.

Here is the basic laptop specification that we have in mind
Operating System Windows 7
Processor I7
RAM 32GB
HDD 4TB
USB 3.0

Any inputs will be appreciated!

Thank you!
btforensics


   
ReplyQuote
jaclaz
(@jaclaz)
Illustrious Member
Joined: 18 years ago
Posts: 5133
 

Here is the basic laptop specification that we have in mind
Operating System Windows 7
Processor I7
RAM 32GB
HDD 4TB
USB 3.0

IMHO you DO NOT want an internal (crappy) 4TB disk, but rather a blazingly FAST SSD 512 Gb or 1 Tb, and of course USB 3.1.
Then have as many external, USB 3/3.1 multi-TB hard disks and/or FAST USB 3.1 SSD's as your budget allow.

jaclaz


   
ReplyQuote
Page 2 / 2
Share: