Forensic Investigation of Emails Altered on the Server | SANS DFIR Summit 2019

  Рет қаралды 8,663

SANS Digital Forensics and Incident Response

SANS Digital Forensics and Incident Response

Күн бұрын

Emails on a cloud email server are often just as vulnerable to tampering as local messages. With a few clicks, an end-user can replace the original message on the email server with an altered copy. What can investigators do to detect red flags and authenticate messages acquired from servers? In this session, we’ll discuss what data points you need to collect from an email
server to authenticate emails, why you should consider preserving emails from multiple sources, and how you can be more confident in your findings by combining server metadata with the information found within the message.
Arman Gungor (@ArmanGungor), CEO, Metaspike

Пікірлер: 7
@Givensondkhar
@Givensondkhar 24 күн бұрын
Just caught your fantastic Forensic Investigation talk. Ever given FilterBounce a shot? It is like having an ace up your sleeve for email verification and lead generation, plus their api is perfect for contact form verification. Changed the game for me! Keep up the great work, SANS!
@beepbopboop7727
@beepbopboop7727 Жыл бұрын
If a client asked me to "preserve" a random selection of emails without a seemingly good reason, I would expect to be deposed a few years later.
@justknot4481
@justknot4481 3 жыл бұрын
catching stupid mother.... blessing , is still fun to do 🤣🤣
@justknot4481
@justknot4481 3 жыл бұрын
or you can catch it from a web cache server , with a proxy 👽👻
Digital Forensics Truths That Turn Out To Be Wrong - SANS DFIR Summit 2018
34:59
SANS Digital Forensics and Incident Response
Рет қаралды 24 М.
WHY DOES SHE HAVE A REWARD? #youtubecreatorawards
00:41
Levsob
Рет қаралды 39 МЛН
Forensic Investigation of Email Client Tool Marks
35:21
SANS Digital Forensics and Incident Response
Рет қаралды 1,1 М.
Keynote: Cobalt Strike Threat Hunting | Chad Tilbury
45:45
SANS Digital Forensics and Incident Response
Рет қаралды 29 М.
Email Header Analysis and Forensic Investigation
22:59
13Cubed
Рет қаралды 142 М.
SANS DFIR Webcast - Incident Response Event Log Analysis
48:50
SANS Digital Forensics and Incident Response
Рет қаралды 79 М.
Investigating WMI Attacks
1:00:43
SANS Digital Forensics and Incident Response
Рет қаралды 25 М.
SANS DFIR Webcast - Memory Forensics for Incident Response
1:08:10
SANS Digital Forensics and Incident Response
Рет қаралды 53 М.
AmCache Investigation - SANS Digital Forensics & Incident Response Summit 2019
29:15
SANS Digital Forensics and Incident Response
Рет қаралды 6 М.
Hidden Secrets of Email Headers
17:15
Rob Braxman Tech
Рет қаралды 14 М.
How DKIM SPF & DMARC Work to Prevent Email Spoofing
17:15
Thobson Technologies
Рет қаралды 87 М.
Email Header Analysis and Digital Forensics
1:03:09
BlackPerl
Рет қаралды 17 М.
cool watercooled mobile phone radiator #tech #cooler #ytfeed
0:14
Stark Edition
Рет қаралды 7 МЛН
Iphone or nokia
0:15
rishton vines😇
Рет қаралды 340 М.
5 НЕЛЕГАЛЬНЫХ гаджетов, за которые вас посадят
0:59
Кибер Андерсон
Рет қаралды 1,1 МЛН
#miniphone
0:18
Miniphone
Рет қаралды 11 МЛН
Apple, как вас уделал Тюменский бренд CaseGuru? Конец удивил #caseguru #кейсгуру #наушники
0:54
CaseGuru / Наушники / Пылесосы / Смарт-часы /
Рет қаралды 4,6 МЛН