Windows Vista Forums
Vista Forums Home Join Vista Forums Windows 7 Forum Vista Tutorials Tags
Welcome to Windows Vista Forums. Our forum is dedicated to helping you find solutions with any problems, errors or issues you are experiencing with Windows Vista. The Vista forum also covers news and updates and has an extensive Windows Vista tutorial section that covers a wide range of tips and tricks.

Go Back   Vista Forums > Vista Forums > System Security

Vista Tutorial - So much for Bitlocker/EFS. MS supplies law enforcement with usb key to extract data

Reply
 
Old 08-17-2008   #1 (permalink)
DNPNWO


Join Date: Sep 2007
Vista Ultimate X64 SP2
 
 

So much for Bitlocker/EFS. MS supplies law enforcement with usb key to extract data

MS supplies cops with DIY forensics tool

By John Leyden More by this author
30 Apr 2008 12:19
Cybercrims? They'll never get their hands on one...

COFEE, (Computer Online Forensic Evidence Extractor)

Microsoft has reportedly developed a USB key that allows investigators to extract forensic data from PCs.
COFEE (Computer Online Forensic Evidence Extractor) comes in a USB key form factor, and was distributed to a small number of law-enforcement agencies last June, the Seattle Times reports. The device includes 150 tools that allow investigators to extract internet history files, for example, or "decrypt passwords".

Rather than pointing to the existence of a backdoor the decrypting password feature appears to relate to password auditing tools. COFEE also allows investigators to upload data for analysis.
The device is used by more than 2,000 officers in at least 15 countries, including Germany and the US. Microsoft supplies the technology to law enforcement agencies without charge. The tool reportedly allows investigators to scan for evidence on site without necessarily having to cart PCs back to a lab.
Computer forensics is a painstaking process carefully designed to make sure data on a suspect computer isn't changed - simply plugging a device into a computer to extract data seems like a quick and dirty fix. The admissibility of such data in court in debatable even before we get into considering the possibility that the USB key might harbour malware.
Another, even greater concern is that the kit will get into the hands of hackers. The form factor for COFEE would be just their cup of tea.
The extraction and analysis of digital evidence features in the investigation of more on more crimes, not just those specific to computers such as internet fraud and child abuse investigations. UK specialists we've spoken to tell us they're struggling to cope with the volume of work from law enforcement clients. There's a genuine problem here, but we're not convinced COFEE is the solution.
Law enforcement officials from forces in 35 countries are meeting in Redmond this week to talk about the role of technology in combating crime. A similar event two years ago led to the development of COFEE, the Seattle Times reports. ®

Microsoft device helps police pluck evidence from cyberscene of crime
http://seattletimes.nwsource.com/htm...msftlaw29.html

My System SpecsSystem Spec
Old 08-17-2008   #2 (permalink)
Master


Join Date: Jan 2008
Microsoft® Windows Vista™ Ultimate x64 SP2 Windows 7 7127 x64
 
 

Re: So much for Bitlocker/EFS. MS supplies law enforcement with usb key to extract da

Very interesting, thank you. It shows you that there is absolutely no point in trying to hide your travels on the web. Rather keep a new hard drive handy.
My System SpecsSystem Spec
Reply

Thread Tools


Similar Threads
Thread Forum
Script to extract XML data VB Script
Extract data out of a seemingly complex structure .NET General
batch job to extract data from tables in DB2 .NET General
Extract data from web page PowerShell
Using bitlocker to isolate users' data Vista security


Vista Forums is an independent web site and has not been authorized,
sponsored, or otherwise approved by Microsoft Corporation.
"Windows Vista", the Start Orb, and related materials are trademarks of Microsoft Corp.
© Designer Media Ltd

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46