Review of Forensic Discovery Posted
"Farmer and Venema do for digital archaeology what Indiana Jones did for historical archaeology. 'Forensic Discovery' unearths hidden treasures in enlightening and entertaining ways, showing how a time-centric approach to computer forensics reveals even the cleverest intruder. I highly recommend reading this book."
"Although memory chips and magnetic disks are designed to store digital information, the underlying technology is analog. With analog storage of digital information, the value of a bit is a complex combination of past stored values. Memory chips have undocumented diagnostic modes that allow access to values smaller than a bit. With modified electronic circuitry, signals from disk read heads can reveal older data as modulations on the analog signal."
At 198 pages this book is a quick read, which explains how I was able to read and review it while writing a new book!
Comments
FYI, another great forensics book for intrusion-related incidents is the Hacker's Challenge series from Mike Schiffman. They read like those Solve-Your-Own-Mystery stories that I loved as a kid. The cases are based on real-world intrusions and the reader is given everything from Exchange logs to physical security system data. Its the closest thing to analyzing a real incident that I've been able to find in a bookstore, and I think these types of books are a great supplement to traditional forensics texts like Kruse's or Vacca's