also @ TechSpot: Initial findings suggest Foxconn plant conditions are above average
Welcome to the TechSpot OpenBoards. Please read the FAQ if you have any questions. Sign up or Login to participate.

Go Back   TechSpot OpenBoards > TechSpot Editorial and Site Feedback > TechSpot News and Comments

Begin your free trial now Pay-as-you-go options starting at $10/user/month

Microsoft's COFEE forensics tool leaks online

Thread Tools Search this Thread
  #1  
Old 11-09-2009
Newcomer, in training
 
Member since: May 2009, 6 posts
Microsoft's COFEE forensics tool leaks online

Microsoft's secret Computer Online Forensic Evidence Extractor (COFEE) has leaked online, and is now available to all. COFEE is quick an easy to use tool, approximately 15MB in size that fits on a USB drive for law enforcement officials to use in PC forensics. It can be used to locate parts of a computer's hard drive used by criminals to commit identity theft, online fraud, child pornography and other such crimes.

Read the whole story
  #2  
Old 11-09-2009
Puiu's Avatar
TechSpot Addict
 
Location: Romania
Member since: Oct 2009, 663 posts
System specs
Since it only works on XP (for now) criminals should just switch to another OS (win7/vista/98/mac/linix) and they have the minimal protection against law enforcers. ^_^
  #3  
Old 11-09-2009
treeski's Avatar
TechSpot Booster
 
Location: Chicago, USA
Member since: Nov 2007, 444 posts
System specs
This is pretty cool. I had no idea that Microsoft worked on stuff like this.
  #4  
Old 11-09-2009
Newcomer, in training
 
Member since: Oct 2009, 19 posts
Yes, like that's what you want: put an officer with minimal computer experience against a identity theft hacker. We need professionals to counteract professionals.
  #5  
Old 11-09-2009
TechSpot Member
 
Member since: Oct 2009, 74 posts
Quote:
Puiu said:
Since it only works on XP (for now) criminals should just switch to another OS (win7/vista/98/mac/linix) and they have the minimal protection against law enforcers. ^_^
Maybe all criminals should start using Linux now... :)
Or even TrueCrypt to encrypt all their bad deeds, but I think all those who do these kind of things are well aware of this and will be 2 steps ahead always...
  #6  
Old 11-09-2009
TechSpot Member
 
Member since: Oct 2009, 138 posts
i still don't really get what is this for ?
  #7  
Old 11-09-2009
TechSpot Enthusiast
 
Location: Canada
Member since: Oct 2009, 392 posts
'REAL criminals' would use linux or something similar anyways (Not xp,vista,7 or osx). And they would have high powered electro magnets at the ready just in case. Just sayin'...
  #8  
Old 11-10-2009
Guest
 
The forensics comminuties have had tools like COFEE for some time. It is another wrapper which under the hood executes builtin OS commands and tools from sysinternals. It is created in a way that a non-technical law enforcement person can run it, very standardized so the impact to the target system is known. Many free tools actually do this better but require more technical understanding. For example, I didn't see that COFEE dumps the memory, pagefile or prefetch directories which all can contain important information, some other tools handle this.

http://praetorianprefect.com/archives/2009/11/more-cofee-please-on-second-thought/
Closed Thread

Similar Topics
Topic Replies Forum
What was that online software download tool? 3 Software Apps
Microsoft issues takedown for leaked COFEE software 24 TechSpot News and Comments
Memory Leaks 3 Windows OS
Memory leaks - Windows 98 2 Windows OS
Sony leaks PSP details 0 General Discussion

Thread Tools Search this Thread
Search this Thread:

Advanced Search
All times are GMT -4. The time now is 08:16 AM.