BEGIN:VCALENDAR
VERSION:2.0
X-WR-CALNAME;VALUE=TEXT:Simson L. Garfinkel: "Digital Forensics Innovation: Searching A Terabyte of Data in 10 minutes"
PRODID:-//Harvard events data//EN
BEGIN:VEVENT
UID:event_71456_0
SUMMARY:Simson L. Garfinkel: "Digital Forensics Innovation: Searching A Terabyte of Data in 10 minutes"
DESCRIPTION:<p><strong>CRCS Lunch Seminar</strong></p><p>Date: Monday, October 1, 2012<br>Time: 12:00pm – 1:30pm<br>Place: Maxwell Dworkin 119</p><p>Speaker:   Simson L. Garfinkel, Associate Professor, Naval Postgraduate School</p><p>Title:  Digital Forensics Innovation: Searching A Terabyte of Data in 10 minutes</p><p><drupal-media data-entity-type="media" data-entity-uuid="af4389ce-9e8b-4d2d-9c41-614e5e8c9c71"></drupal-media></p><p>Abstract:  Most digital forensics tools follow a simple model of “visibility, filter and report” – the tool extracts all of the information on a subject’s disk drive, this information is filtered according to search terms, and finally a detailed report is created by a trained examiner. The problem with this model is that it cannot keep up with the growing amount of storage on desktops and in the cloud, the increasing diversity of data formats, or the growing perniciousness of malware.</p><p>This talk present a new approach that allows rapid triage of digital storage devices using random sampling, bulk data analysis, and the presence of distinct, recognizable sectors that are commonly found in user-generated documents, multimedia, and encrypted files. It shows how a 30MB piece of video hidden on a 1TB hard drive can be found in less than 10 minutes, even if the video deleted and partially overwritten so that no file headers, footers, or metadata can be recovered. We show how we can deploy this technique on a laptop in the field with a custom-built database with a billion rows that can perform more than a thousand lookups per second.</p><p>Bio:    Simson L. Garfinkel is an Associate Professor at the Naval Postgraduate School. Based in Arlington VA, Garfinkel’s research interests include computer forensics, the emerging field of usability and security, personal information management, privacy, information policy and terrorism. He holds six US patents for his computer-related research and has published dozens of journal and conference papers in security and computer forensics.</p><p>Garfinkel is the author or co-author of fourteen books on computing. He is perhaps best known for his book Database Nation: The Death of Privacy in the 21st Century. Garfinkel’s most successful book, Practical UNIX and Internet Security (co-authored with Gene Spafford), has sold more than 250,000 copies and been translated into more than a dozen languages since the first edition was published in 1991.</p><p>Garfinkel is also a journalist and has written more than a thousand articles about science, technology, and technology policy in the popular press since 1983. He started writing about identity theft in 1988. He has won numerous national journalism awards, including the Jesse H. Neal National Business Journalism Award two years in a row for his “Machine shop” series in CSO magazine. Today he mostly writes for Technology Review Magazine and the <a href="http://technologyreview.com/">technologyreview.com</a> website.</p><p>As an entrepreneur, Garfinkel founded five companies between 1989 and 2000. Two of the most successful were <a href="http://vineyard.net/">Vineyard.NET</a>, which provided Internet service on Martha’s Vineyard to more than a thousand customers from 1995 through 2005, and Sandstorm Enterprises, an early developer of commercial computer forensic tools.</p><p>Garfinkel received three Bachelor of Science degrees from MIT in 1987, a Master’s of Science in Journalism from Columbia University in 1988, and a Ph.D. in Computer Science from MIT in 2005.</p>
LOCATION:Maxwell Dworkin 119
STATUS:CONFIRMED
DTSTART:20121001T160000Z
DTEND:20121001T173000Z
END:VEVENT
END:VCALENDAR