YoVDO

USB Flash Drive Forensics

Offered By: 44CON Information Security Conference via YouTube

Tags

44CON Courses Cybersecurity Courses Digital Forensics Courses

Course Description

Overview

Explore USB flash drive forensics in this 57-minute conference talk from 44CON 2011. Delve into the history of USB technology, hardware and software components of flash drives, file systems, and Windows-specific considerations. Learn about write blockers, the Windows registry, and USB device viewing tools. Discover forensic techniques for storage media analysis, including sector-by-sector copying and command block operations. Examine the FTDI block diagram, IDE interface, and Guzzi commands. Gain insights into device power management, user-friendly implementations, and the concept of a USB write blocker. Consider future directions, potential challenges, and the role of the Open Source Cyber Forensics Association in this field.

Syllabus

Intro
Overview
The IT Crowd
USB History
Hardware
Software
Flash Drive Hardware
Flash Drive Software
File Systems
Windows
Write blocker
Windows registry
USB Device View
Results
Forensics
Storage Media
FTDI
Block Diagram
IDE
IO
Sectorbysector copy
Command block
Guzzi commands
Status wrapper
Code
Device
Power
Userfriendly
Puzzle tin
USB write blocker
Future directions
Possible problems
Open Source Cyber forensics Association
References


Taught by

44CON Information Security Conference

Related Courses

Supply Chain Unchained - How To Be A Bad SaaS
44CON Information Security Conference via YouTube
Aviation Security 101
44CON Information Security Conference via YouTube
The Anti-Checklist Manifesto
44CON Information Security Conference via YouTube
Why Are We Still Doing Authentication Wrong?
44CON Information Security Conference via YouTube
What Do Hackers See When They Look at the Clouds
44CON Information Security Conference via YouTube