Corrobora – Cross-Artifact Consistency Analysis For Windows Digital Forensics

Hero Image

Dielle De Noon explores the development and validation of two key components of her open-source Windows digital forensics framework and how they lay the foundation for future cross-artifact correlation....

Today's headlines 25 Sep 2026

Go Beyond The Basics With XRY Kiosk From MSAB

Go Beyond The Basics With XRY Kiosk From MSAB

Go beyond the basics with XRY Kiosk - extract logical, full file system, physical and RAM data through controlled, compliant workflows built for fast frontline forensics....read more

How Semantics 21 Is Calling Time On Add-On Culture In Digital Forensics

How Semantics 21 Is Calling Time On Add-On Culture In Digital Forensics

Investigative capability shouldn’t be split across licences, modules and bolt-ons - S21 VisionX brings visual review, prioritisation and victim identification into one intelligence-led platform....read more

Magnet Forensics Expands Collaboration With NCMEC To Strengthen Victim Identification

Magnet Forensics Expands Collaboration With NCMEC To Strengthen Victim Identification

Coming soon to Magnet Griffeye: new capabilities will enable investigators to securely share CSAM-related files, hashes and investigative information directly with NCMEC, helping streamline workflows and support faster child victim identification....read more

What’s Happening In Forensics – Aug 27, 2019

Oleg Afonin talks about the forensic implications of Touch ID and Face ID in iOS 12. Maxim Suhanov shares a list of open research topics in Windows forensics. Oxygen Forensics demonstrate their Parrot Drone data extraction capabilities.

What’s Happening In Forensics – Aug 26, 2019

Edewede Oriwoh shares a concept and design for the Forensics Edge Management System. Sarah Edwards demonstrates iOS location mapping with APOLLO. SANS begin the countdown to DFIRCon 2019. Cellebrite’s Ben Armon shows how to consolidate multiple identifiers into a single

BlackBag Announces Release Of BlackLight 2019 R2

BlackLight 2019 R2 is now available! This release is packed full of powerful features customers have requested and need to complete investigations quickly and efficiently. Enhancements and Improvements Include: • Archive File Processing• APOLLO Support via the new Plugin Manager•

Forensic Focus Forum Round-Up

Welcome to this month’s round-up of recent posts to the Forensic Focus forums. Forum members discuss the existence and utility of a forensic seed bank. Can you help Fra93 to check if a PDF file has been manipulated? How would

What’s Happening In Forensics – Aug 22, 2019

Magnet AXIOM 3.5 is now available. Andrea Fortuna discusses how to generate a Volatility profile for a Linux system. SANS talk about understanding the forensic science in digital forensics. MSAB release XRY 8.0.2. Amped describe how Amped FIVE is helping

Transferring A Password Recovery Process To A Different Computer

Did you know that Passware Kit can create a snapshot of a password recovery process at any time and resume it on a different computer? Running a password recovery attack, especially for multiple files or drives, might be a long

BlackBag Announces New Partnership With Berla

BlackBag Technologies announces a new partnership with industry-leading vehicle forensics company, Berla. In today’s investigations, it is now commonplace to have multiple digital devices associated to one case. As such, consolidating acquired devices is critical when reconstructing a sequence of

What’s Happening In Forensics – Aug 21, 2019

John Walsh speaks about child protection investigations at Cellebrite’s TechDay. Amped share how to use Amped FIVE's color deconvolution filter to show relevant elements from color-mixed images.

What’s Happening In Forensics – Aug 19, 2019

Harlan Carvey discusses what ‘program execution‘ really means. Brett Shavers shares how the lessons he learned in the Marine Corps inform his digital forensics career. Anuj Soni shares how to perform code analysis with Ghidra. Cellebrite share a case study

Huawei Device Support In Oxygen Forensic Detective

Oxygen Forensic Detective offers various methods of data extraction from Huawei devices. First, Huawei devices can be connected via USB cable for logical or physical acquisition depending on the model and Android OS version. However, with constantly growing device security

Interview With Nicole Odom, Forensic Scientist, Virginia DFS

Nicole, you started out in chemistry and biological sciences before moving from orthopedics to digital forensics. What prompted you to pivot into the cyber world? I actually get asked that question quite frequently, as my background has a little bit

What’s Happening In Forensics – Aug 16, 2019

Oxygen Forensics talk about the allegations that Huawei has been spying on US users. Harlan Carvey follows up with a second post on ‘chasing the DFIR cure.’