In 2008, I wrote a blog entry, Simple Techniques That Fool Forensic Tools, that included an introduction to Alternate Data Streams. Now, I’d like to go into more detail, so that you can better understand the use and danger of
Alternate Data Streams

In 2008, I wrote a blog entry, Simple Techniques That Fool Forensic Tools, that included an introduction to Alternate Data Streams. Now, I’d like to go into more detail, so that you can better understand the use and danger of
Data Classification seems to mean different things to different people. In our File Investigator products, we classify each file by Platform it is typically found on (ex: Macintosh, MS Windows, Linux, …) Storage method(s) used (ex: Archive, Digital Audio, Vector,