
-
-
- Paisano1
- added this
After the leak of Microsoft COFFEE into the wild, a tool emerges that will supposedly make life very difficult for a forensic investigator using COFFEE. The tool is titled DECAF and is freely available, although not open source. The tool does not need to be installed, and when configured in ‘LockDown Mode’ offers a set of Counter-Forensics functions upon detecting a COFFEE process running on the computer. The following options Counter-Forensics functions are available…
http://information-security-resources.com/2010/01/06/decaf-counter-forensics-cof...
http://information-security-resources.com/2010/01/06/decaf-counter-forensics-cof...
-
-
DarrenChaker
-
DECAF is one of the first for a major company such as Microsoft to promote a counter forensic program. Considering tons of computers are lost/stolen/donated each year, it is important to erase old info. Darren Chaker
- 10 months ago
-
DarrenChaker