I am retiring this social media account. Find me as @hal_pomeranz@infosec.exchange

Orlando, FL
Joined November 2008
Filter
Exclude
Time range
-
Near
Replying to @TimMedin
@timmedin Barrel maker is correct. The word "cooper" apparently derived from earlier languages... according to some quick Internet research
Replying to @BryanTheSnail
@BryanTheSnail @4n6woman And getting them mixed up is a very common programming error...
Replying to @TimMedin
@timmedin Quick quiz: if your last name is Cooper then one of your ancestors was a...?
@4n6woman You have a sense of humor? :-)
Today is the day after April Fools, meaning you shouldn't believe everything you read...
Replying to @BryanTheSnail
@BryanTheSnail And of course Linux dd works as does mounting images via loopback.
Replying to @BryanTheSnail
@BryanTheSnail DFF claims to support EXT4 but I've not tried it. Sleuthkit works at the fs and blk level but not higher.
@4n6woman I don't know from EnScript, but % in most programming languages is "modulus"-- aka "remainder after integer division". 8 % 3 = 2
RT @AFoDBlog: Looks like no keylogger on Samsung laptops after all. http://engt.co/eHpjXa [then why did cust support say there was?]
1
@ericjhuber Not at this time. Maybe me in the future? Or you?
RT @bgarnett17: SIFTing w/ E01's ramslack.wordpress.com by @CdtDelta #dfir [Excellent! One less blog post I have to write! Thanks @CdtDelta!]
Replying to @competentgirl
@competentgirl Oh yeah, I *love* that conversation. "What sort of firewall are you using?" "OpenBSD"
@iamnowonmai "Shot through the heart, and you're to blame. You give love a BAD NAME!"
@davehull I've been meaning to write a Perl XS module for parsing wtmp files but haven't had the time.
"... They'll come true in the END!" [cue massive power chord]
"We're running with the shadows of the night. So baby take my hand it will be all right. Surrender all your dreams to me tonight..."
Replying to @competentgirl
@competentgirl Ah, no CIR... Welcome to consumer-grade broadband.
@ericjhuber Apropos of you recent blog post, there are all sorts of interesting on-disk artifacts left behind by Dropbox...
RT @jgarcia62, @r0bertmart1nez, @Shadowserver: Samsung installs keylogger on its laptops: http://bit.ly/h4UaEN [class action in 3,2,1...]
1
1
Replying to @davehull
@davehull The structs are so regular, I bet you could build a wtmp detector by looking for the increasing time values...