|
Downloads: FTimes 3.2.1 Intrusion Analysis Tool Released |
|
|

FTimes is a system baselining and evidence collection tool. The primary purpose of FTimes is to gather and/or develop information about specified directories and files in a manner conducive to intrusion analysis.
FTimes is a lightweight tool in the sense that it doesn't need to be "installed" on a given system to work on that system, it is small enough to fit on a single floppy, and it provides only a command line interface.
Preserving records of all activity that occurs during a snapshot is important for intrusion analysis and evidence admissibility. For this reason, FTimes was designed to log four types of information: configuration settings, progress indicators, metrics, and errors. Output produced by FTimes is delimited text, and therefore, is easily assimilated by a wide variety of existing tools.
Changes in this version:
Generally, code was cleaned up and refined as necessary. The configure/build process has been updated, and several new configure options were added. The major event for this release was the addition of a number of new Dig, HashDig, and Map utilities. These tools were designed to support various workbench activities such as extracting DigString context, resolving MD5 hashes, and constructing MAC/MACH timelines. The primary focus of the work effort was to refine these utilities to the point where they could be released in beta form.
Help Net Security
|
|
|
 |
| "Downloads: FTimes 3.2.1 Intrusion Analysis Tool Released" | Login/Create an Account | 0 comments |
|
| | The comments are owned by the poster. We aren't responsible for their content. |
|
|
|
No Comments Allowed for Anonymous, please register |
|
| |
|
Login |
|
 |
|
|
|
|
· New User? · Click here to create a registered account.
|
|
|
Article Rating |
|
 |
|
|
|
|
Average Score: 0 Votes: 0
|
|
|