#Forensics

2026-02-01
2026-01-30

Does anyone know a good tool to find deleted Mastodon posts?
I deleted a post earlier this month, and while I thought I took a screenshot of it before I deleted it, I can't find that screenshot.
It was a public post made on this account to someone on another instance.
I have the URL of the post and the first four words from my browser history, and know the date and approximate time it was posted. It was deleted a few minutes after it was posted, and to my knowledge only a few people read it.
This isn't just for pure curiosity, though the consequences if I can't get it aren't world ending.

#Forensics #AskFedi

Angus Marshall :2001: :linux:marshalla99@thx.gg
2026-01-29
your auntifa liza 🇵🇷 🦛 🦦blogdiva
2026-01-28
2026-01-28

Still SFF, for now. But maybe reality soon.

"The notarized document you will send to the public defender won’t read like a thriller but like a lab report. In 2030 a “reality notary” is no longer science fiction; it is the person whose services we use to ensure that people and institutions are what they appear to be."

scientificamerican.com/article

#DeepFakes #Digital #Forensics

2026-01-27

Instalación de PiRogue en una Raspberry Pi 4 - Parte 1

fediverse.tv/w/iVZiYVN32YVB4wF

2026-01-27

Looking for professionals & researchers in voice #biometrics / #SpeechTech to participate in academic interviews (speaker ID/verification, language recognition, speech analytics, #forensics). Your industry perspectives will inform research on how these technologies are taken up by state institutions.

Promotional poster from the University of Groningen recruiting participants for a research project on the voice biometrics industry. It features a photo of researcher Daniel Leix Palumbo, explains that professionals and researchers in voice identification, verification, and analysis are invited for a 40–60 minute interview, outlines discussion topics on current uses, challenges, and future directions of voice biometrics, and includes contact details and QR codes for project information and interview sign-up.
⚯ Michel de Cryptadamus ⚯cryptadamist@universeodon.com
2026-01-26

Released v1.3.3. of #Yaralyzer, my surprisingly popular tool for visualizing YARA rule matches with colors (a lot of colors).

1. --export-png images lets you export images of the analysis

2. almost all command line options (including multi argument ones like --yara-rules-dir) can be permanently set via environment variables or .yaralyzer file

3. couple of small bug fixes and debugging related command line options

You can try it on the web here: yaratoolkit.securitybreak.io/
(I didn't build this website, Thomas Roccia from Microsoft just integrated Yaralyzer into his existing site)

- Github: github.com/michelcrypt4d4mus/y
- Pypi: pypi.org/project/yaralyzer/
- on macOS you can also get it with #Homebrew by installing Pdfalyzer: brew install pdfalyzer

#ascii #asciiArt #blueteam #cybersecurity #detectionEngineering #DFIR #forensics #FOSS #GPL #hacking #infosec #KaliLinux #maldoc #malware #malwareAnalysis #malwareDetection #openSource #pypi #python #redteam #reverseEngineering #reversing #Threatassessment #threathunting #YARA #YARArule #YARArules

screenshot of yaralyzer output
Microglyphicsmicroglyphics
2026-01-26

Is it just me and my neurodiverse brain, or does everyone notice minutiae like this – and then feel compelled to blog about it?
👉philosophics.blog/2026/01/26/e
What sorcery is this? 🪄 I often catch myself typing 'anough' for 'enough'. It's also closer to how I pronounce it. I may adopt this spelling out of spite. Does this happen in other languages?

2026-01-25

I rarely post here, but when I do... I just updated my Volatility autoruns plugin to be compatible with Volatility 3 (long overdue!) Here's the goodies: github.com/tomchop/volatility3 #dfir #forensics #cybersecurity

[Show GN: 데이터의 벡터구조를 수학적으로 붕괴시켜 영구삭제하는 VANI를 개발했습니다

VANI는 데이터의 벡터 구조를 수학적으로 붕괴시켜 영구 삭제하는 윈도우용 도구로, 기존의 덮어쓰기 방식의 한계를 극복하고 초고속 삭제를 구현했습니다. 주요 기술로는 Vector State Collapse, Entropy Maximization, Hilbert Curve Optimization이 포함되며, GitHub와 Gumroad에서 공개되었습니다.

news.hada.io/topic?id=26064

#datadeletion #vectorcollapse #entropymaximization #nvme #forensics

Paul HouleUP8
2026-01-22

@albomp.bsky.social @senatorwong.bsky.social@bsky.brid.gy #auspol “Had the world stood up to Netanyahu as he illegally annexed more and more of Palestine then we wouldn’t be talking about the U.S. colonizing Canada & Greenland” Dr Dan Goyal Evolutionary Neuroscientist #philsci #neuroscience #psych #forensics

a man wearing headphones and a...

2026-01-20

#Predator #Spyware Turns Failed #Attacks Into Intelligence For Future #Exploits - Slashdot

The new research reveals an error #taxonomy that reports exactly why #deployments fail, turning black boxes into #diagnostic events for threat actors. Almost exclusively marketed to and used by national governments and intelligence agencies, the spyware also detects #cybersecurity tools, suppresses #forensics evidence, and has built-in geographic restrictions.
#security #privacy

it.slashdot.org/story/26/01/17

Dr. Folke Bernadotte 🇪🇺folkebernadotte25
2026-01-19

1/14
The "Face" of Family: A Forensic Deep Dive 🧬📐

I’m often asked: "One is my mother, the other two are my aunts. How can you be sure?" As a data nerd, "vibes" aren't enough. I ran a multi-modal biometric analysis using Facial Anthropometry and Unsupervised Machine Learning to prove the kinship. This isn't just about looking alike; it’s about the underlying mathematical architecture of the human skull and soft tissue. Let’s look at the math. 🧵👇

Ichinin :verified: :verified_paw: ✅🎯🙄Ichinin@infosec.exchange
2026-01-15

Funny how the Swedish police are pushing hard for job candidates to have a drivers license, even if all you do is sit on your ass and conduct criminal investigations on a fixed location.

Too bad for them that i fulfil all the criteria - and then some, having done forensics investigations for the military, OSINT investigations, written lengthy reports, am a fullstack developer who writes my own tools and is an expert in visualisation of security events.

Before you put out a job ad where you (desperately) seek specialist candidates - ask yourself "Is this hiring criteria REALLY relevant to the job for this position"?

Also i've heard that forensics people who do data collection for law enforcement in Sweden are supposed to have a college (like with a gun) present during collection of hardware and storage data at a suspects location, according to a guy i knew in the military who had worked in the police, but i found out earlier from a police forensics guy that "This is not always the case".

Stuff like that really doesn't make you feel comfortable, even if i had a drivers license i would be sceptical of applying.

In the military it was a different ball game when you did investigations on the inside of a government agency, you did not have to worry about a suspect returning "home" and physical threats, sometimes you already had access to the data via other means so collection wasn't always necessary.

Two very disparate working environments. Regardless i saw a job ad and just wanted to vent a bit.

#dfir #forensics #collection #workingenvironment

Angus Marshall :2001: :linux:marshalla99@thx.gg
2026-01-13

The House of Lords Science and Technology Committee has published more written evidence submissions, including mine : Forensic science: follow-up - Committees - UK Parliament share.google/aZFnLRfM85FooNiD3 #forensics #regulation #dfir #digitalForensics

2026-01-11

🛠️ Tool
===================

Opening:
Loki-RS is a Rust-based rewrite of the original Loki scanner that consolidates YARA rule matching and IOC detection into a single high-performance, multi-threaded binary. The project is published as Beta and emphasizes speed, concurrency, and multiple output formats for forensic ingestion.

Key Features:
• YARA scanning of files and process memory with the Core YARA Forge rule set as the default detection surface.
• IOC matching covering cryptographic hashes (MD5, SHA1, SHA256), filename patterns and C2 indicators drawn from the signature-base collection.
• Concurrency model permitting configurable thread counts for parallel scanning and CPU-bound tuning.
• Archive handling with ZIP inspection to reach nested artifacts.
• Operational tooling including an interactive TUI for real-time stats and controls, HTML report generation, and JSONL output for SIEM/log pipeline ingestion.
• Remote logging via syslog over UDP/TCP, with both SYSLOG and JSON formats supported.

Technical Implementation:
• The codebase leverages Rust for memory safety and performance; multi-threaded scanning suggests internal worker queues and file/process enumeration that avoid scanning virtual filesystems by default (/proc, /sys).
• Signature management integrates signature-base for IOCs and YARA Forge for rule sets; the Core rule set is chosen for accuracy and low false positives, while Extended/Full sets are available for swap-in.
• Output pathways include structured JSONL for ingestion pipelines and HTML for human-readable reporting; remote sinks support syslog framing in both traditional SYSLOG and JSON payload modes.

Use Cases:
• Forensic triage on endpoints and mounts where quick identification of known artifacts (hashes, filenames, C2 indicators) is needed.
• Bulk filesystem scans across images or mounted volumes with multi-threaded throughput requirements.
• Integration with logging/monitoring stacks via JSONL or syslog exports.

Limitations & Considerations:
• Project is Beta: features and signatures remain under active development.
• Signature freshness depends on external sources; operational users should plan for regular signature updates.
• Default smart filtering skips virtual filesystems and mounted drives; scanning network/cloud mounts requires explicit configuration.

References:
• Detection content: signature-base (IOCs) and YARA Forge (YARA rules).

🔹 tool #rust #yara #ioctools #forensics

🔗 Source: github.com/Neo23x0/Loki-RS

2026-01-08

How to statically identify embedded JavaScript or cryptomining code inside PDF files on Ubuntu? #security #malware #javascript #forensics #cryptocurrency

askubuntu.com/q/1562658/612

N-gated Hacker Newsngate
2026-01-07

🚨 Big Retail now has its own unit! 🤦‍♂️ Move over, FBI—Target's taking over with their forensic prowess to tackle the true crime epidemic of... . Because who needs actual law enforcement when you have a red polo and a price scanner? 🕵️‍♀️🔍
thehorizonsun.com/features/202

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst