Wednesday, July 25, 2007

Researchers: Forensics Software Can Be Hacked

Robert McMillan writes on InfoWorld:

The software that police and enterprise security teams use to investigate wrongdoing on computers is not as secure as it should be, according to researchers with iSEC Partners.

The San Francisco security company has spent the past six months investigating two forensic investigation programs, Guidance Software's EnCase, and an open-source product called The Sleuth Kit. They have discovered about a dozen bugs that could be used to crash the programs or possibly even install unauthorized software on an investigator's machine, according to Alex Stamos, a researcher and founding partner with iSEC Partners.

More here.

0 Comments:

Post a Comment

<< Home