bolha.us is one of the many independent Mastodon servers you can use to participate in the fediverse.
We're a Brazilian IT Community. We love IT/DevOps/Cloud, but we also love to talk about life, the universe, and more. | Nós somos uma comunidade de TI Brasileira, gostamos de Dev/DevOps/Cloud e mais!

Server stats:

256
active users

#Forensics

1 post1 participant0 posts today

I’ve spent 37+ years in forensic handwriting analysis, including consulting on cold cases and training law enforcement internationally.

With a PhD in Applied Ethics and ongoing studies in constitutional + human rights law, my focus is on integrity, evidence, and reputation in high-conflict digital environments.

I’ll be using this space to quietly track patterns that apply to my work.

For hobbyist Cobalt Strike Beacon collectors, note that the recently announced 4.11 update introduces a number of changes to frustrate Beacon configuration extraction, namely through the new `transform-obfuscate` field.

When set, this field can apply multiple layers of encoding, encryption and compression (with some recent Beacons observed with a 32 byte XOR key, configurable upto 2048 bytes!).

While still reasonably trivial to decode manually, standard automated workflows (say, through the SentinelOne parser) will now fail, not least because of changes to the well-known field markers.

Beacons with these characteristics have thus far been observed with watermarks indicative of licensed instances, though I imagine it is only a matter of time before the 4.11 capabilities become accessible to all manner of miscreants.

A sample configuration, via a staged Beacon on 104.42.26[.]200 is attached, including the three distinct XOR keys used to decode it.

cobaltstrike.com/blog/cobalt-s

#Cellebrite Is Using AI to Summarize Chat Logs & Audio from Seized Mobile Phones

Cellebrite the company which makes near ubiquitous phone #hacking & #forensics tech used by police officers…has introduced AI capabilities into its products, including summarizing chat logs/audio messages from #seized mobile phones

The introduction of #AI into a tool that essentially governs how #evidence against criminal defendants is analyzed already has #CivilLiberties experts concerned

404media.co/cellebrite-is-usin

404 Media · Cellebrite Is Using AI to Summarize Chat Logs and Audio from Seized Mobile PhonesThe proliferation of AI through law enforcement tools already has civil liberties experts concerned. “When you have results from an AI, they are not transparent. Often you cannot trace back where a conclusion came from, or what information it is based on. AIs hallucinate," one said.
🔴 Mañana domingo 2 de marzo inicia el Curso Hacking Kali Linux 2025. ⌛️ Domingos 2, 9, 16, 23 de Marzo. De 9:00 am a 12:00 pm (UTC -05:00). 🌎 Más información: https://www.reydes.com/e/Curso_de_Hacking_con_Kali_Linux #cybersecurity #hacking #readteam #bugbounty #forensics #osint
Curso Hacking Kali Linux 2025. Domingos 2, 9, 16, 23 de Marzo. De 9:00 am a 12:00 pm (UTC -05:00). Más información: https://www.reydes.com/e/Curso_de_Hacking_con_Kali_Linux WhatsApp: https://wa.me/51949304030 #cybersecurity #hacking #readteam #bugbounty #forensics #osint