Directed Study in Computer Forensics

Chris Williams <williacb@clarkson.edu>

Fall 2010

Documents:

MAAWG:

In early October, I attended a meeting of the Messaging Anti-Abuse Working Group in Washington, DC. This was somewhat applicable to forensics and cybercrime in that most messaging abuse (spam, phishing, etc.) is criminal in nature. Unfortunately, there is a strict confidentiality policy regarding specifics, so I cannot release my notes.

I attended seminars and panels on IPv6, mobile malware, the cybercrime economy, botnet detection and sandboxing, and antispam techniques.

Analysis of a compromised VM:

In January, it was discovered that a virtual machine in the CS Labs had been compromised, so I have been analyzing it and attempting to determine how the break-in occurred and what steps can be taken to prevent further attacks.


Last update: 12/2/10 15:31