Notifications
Clear all
Topic starter
12/05/2009 3:29 pm
I am very new to the field of digital forensics. I have a background in networking and would like to know what devices or software that could possibly be used to retrieve data from a live network environment. I am more interested in information currently in memory rather than syslog type data from historical DB's etc.
12/05/2009 3:42 pm
You may be interested in looking at http//
Matthew Shannon's tool allows remote access to RAM and HDDs and then allows you to acquire them with your own tool. We have it, its fantastic - and reasonably priced too.
Topic starter
12/05/2009 4:10 pm
Thanks DFICSI I will check it out.