Schedule Day 2

Thursday 11th December 2008 - Hands-on lab tracks

The second and third days of the Conference will be held at the University of Hong Kong. They will be divided into three tracks - Mobile Device Forensics, Incident response & Miscellaneous Forensics:

Track 1 - Mobile Device Forensics

Time
Speaker
Topic
0900-1030 Mr.Martin Westman, Microsystemation, Sweden Mobile Device Forensics
This Workshop will explain the use of the popular XRY and XACT Forensics Tools used in the analysis of mobile devices. Attendees will learn the capabilities of phone forensics, methodologies for correct handling and an overview of recovering deleted data from handset memory
1030-1100
Coffee Break Sponsored By Manifest Marketing
1100-1230 Mr.Martin Westman, Microsystemation, Sweden (cont.)
1230-1400
Lunch
1400-1530 Mr. Steve Hirst,
Operations Manager,
Digital Genetics International Ltd, UK

Hex Dumps
This workshop will look at the uncharted world of dumping hex data from mobile device handsets and subsequent analysis to recover deleted artifacts.
Steve will use a variety of tools (hardware and software) and explain recent research into this field

1530-1600
Coffee Break Sponsored By Manifest Marketing
1600-1730 Mr. Steve Hirst,
Operations Manager,
Digital Genetics International Ltd, UK
(Cont.)

Track 2 - Incident response/Live Forensics

Time
Speaker
Topic
0900-1030 Mr. Matthew Shannon, F-Response
&
Mr. Jon Evans,
Network Investigator for Gwent Police Hi-Tech Crime Unit, UK
&
Mr. Andy Joyce, Manager Digital Forensics,
FDR Forensic Data Recovery Inc, BC Canada
Live Forensics
This is a hands-on workshop demonstrating the flexibility of F-Response to be used as an enabler for Live Response. Assisted by Jon Evans and Andy Joyce, Matthew Shannon will show how F-Response can be used to acquire physical memory which can then be used to unlock encrypted drives such as those using Microsoft's Bitlocker
1030-1100
Coffee Break Sponsored By Manifest Marketing
1100-1230 Mr. Matthew Shannon, F-Response
&
Mr. Jon Evans,
Network Investigator for Gwent Police Hi-Tech Crime Unit, UK
&
Mr. Andy Joyce, Manager Digital Forensics,
FDR Forensic Data Recovery Inc, BC Canada
(cont.)
1230-1400
Lunch
1400-1530 Mr. Anthony Lai (Dark Floyd) Exploitation with Backtrack
BackTrack is a well-known live CD with various penetration test tools. The workshop will show some new tools to gather server information and demonstrate how to exploit client browser vulnerability with Metasploit and Meterpreter. This will be a fun session, all about creativity in a hands-on practical environment.
1530-1600
Coffee Break Sponsored By Manifest Marketing
1600-1730 Mr. Anthony Lai (Dark Floyd) (Cont.)

Track 3 - Miscellaneous Forensics

Time
Speaker
Topic
0900-1030 Mr. Andrew Rosen, Asrdata USA

The SMARTER acquisition Framework in action

This interactive session will expose attendees to SAW, Smart-Mount, Grok-NTFS and other tools in Windows and Linux,( both in an English or Chinese environment). Together, these tools represent a SMARTER new way of conducting large scale analysis under any kind of environment.
1030-1100
Coffee Break Sponsored By Manifest Marketing
1100-1230 Mr. Andrew Rosen, Asrdata USA (cont.)
1230-1400
Lunch
1400-1530 Mr. Peter Mercer
Director, Network & Perimeter Security Services, Australia
Advanced E-mail forensics workshop
This workshop will provide attendees with the opportunity to learn a new method for visualising and making sense of complex e-mail examinations.
1530-1600
Coffee Break Sponsored By Manifest Marketing
1600-1730 Mr. Peter Mercer
Director, Network & Perimeter Security Services, Australia
(cont.)

 

Schedule for Friday 12th December 2008 (click here)

Sponsors:


Manifest Marketing Ltd

Supporting
Organisations:


University of HK CISC