Difference between pages "Mdd" and "Upcoming events"

From Forensics Wiki
(Difference between pages)
Jump to: navigation, search
 
(Calls For Papers)
 
Line 1: Line 1:
{{Infobox_Software |
+
<b>PLEASE READ BEFORE YOU EDIT THE LISTS BELOW</b><br>
  name = mdd |
+
When events begin the same day, events of a longer length should be listed first.  New postings of events with the same date(s) as other events should be added after events already in the list. Please use three-letter month abbreviations (i.e. Sep, NOT Sept. or September), use two digit dates (i.e. Jan 01 NOT Jan 1), and use date ranges rather than listing every date during an event(i.e. Jan 02-05, NOT Jan 02, 03, 04, 05).<br>
  maintainer = [[ManTech|ManTech International Corporation]] |
+
<i>Some events may be <u>limited</u> to <b>Law Enforcement Only</b> or to a specific audience. Such restrictions should be noted when known.</i>
  os = {{Windows}} |
+
  genre = Memory acquisition |
+
  license = {{GPL}} |
+
  website = [http://mdd.sourceforge.net/ mdd.sf.net] |
+
}}
+
  
'''mdd''', also known as '''[[ManTech|ManTech dd]]''' or '''Memory dd''', is a command line program to acquire an image of the memory of a running [[Windows]] computer. The program has been included in the [[Helix]] incident response tool.
+
This is a BY DATE listing of upcoming events relevant to [[digital forensics]].  It is not an all inclusive list, but includes most well-known activities.  Some events may duplicate events on the generic [[conferences]] page, but entries in this list have specific dates and locations for the upcoming event.
  
== Current Status ==
+
This listing is divided into three sections (described as follows):<br>
The current version of mdd [forensicswiki|mdd_1.3.exe] runs on Window XP to SP3 and Vista to SP 2, and may run on other versions. However, development seems to have stopped. For a more full-featured memory dumper, consider [[WinDD]].
+
<ol><li><b><u>[[Upcoming_events#Calls_For_Papers|Calls For Papers]]</u></b> - Calls for papers for either Journals or for Conferences, relevant to Digital Forensics (Name, Closing Date, URL)</li><br>
 +
<li><b><u>[[Upcoming_events#Conferences|Conferences]]</u></b> - Conferences relevant for Digital Forensics (Name, Date, Location, URL)</li><br>
 +
<li><b><u>[[Training Courses and Providers]]</u></b> - Training </li><br></ol>
  
== Usage ==
+
== Calls For Papers ==
To execute mdd, you must start cmd.exe. The options are:
+
Please help us keep this up-to-date with deadlines for upcoming conferences that would be appropriate for forensic research.
* -o ''filename'' - required to actually run mdd
+
* -w - license information
+
* -v - verbose
+
To run mdd, the account you are using must have administrator access to the machine you wish to image (however, it does not have to be the Administrator account; it only needs to be in the local Administrator group). The program works by installing a service, called mdd, although see below for problems.
+
  
== Known Issues ==
+
{| border="0" cellpadding="2" cellspacing="2" align="top"
These are the known problems with mdd.
+
|- style="background:#bfbfbf; font-weight: bold"
===Error 1073===
+
! width="30%|Title
This is a Windows Service Manager error. mdd executes by registering itself as a service, so it can run as administrator, although this does not mean you can run mdd without having administrator access. At the end of a normal execution, the service is deleted. However, mdd can accidentally leave the service installed, and this prevents further imaging. This could be caused by the system crashing (or an intentional system crash) during imaging, or by attempting to stop the imaging with control-c.
+
! width="15%"|Due Date
If this happens, a knowledgeable Windows user will open up the Services tab in Computer Manager, but unfortunately, Windows has a wonderful feature that allows services, when they are registered, to state whether or not they wish to be seen in the Service Manager. This amazing concept allows services to run less visibly, and should be considered a class-a security flaw.
+
! width="15%"|Notification Date
Fortunately, there's a way around this, using the command line (cmd.exe).
+
! width="40%"|Website
* Run cmd.exe
+
|-
* In cmd.exe, run "sc help" to see the service manager command line tool
+
|IEEE Symposium on Security and Privacy
* Run "sc query" to see all of the currently registered services, but note that this list will overflow the default line buffer of cmd.exe (this is adjustable, but not necessary for our purposes)
+
|Nov 13, 2013
* Run "sc query mdd" and - ta-da - you'll see the mdd service
+
|
* Run "sc delete mdd" and it's gone, and mdd can now be run again.
+
|http://www.ieee-security.org/TC/SP2014/cfp.html
 +
|-
 +
|DFRWS-Europe 2014
 +
|Dec 01, 2013
 +
|Mar 01, 2014
 +
|http://www.dfrws.org/2014-europe/index.shtml
 +
|-
 +
|44th Annual IEEE/IFIP International Conference on Dependable Systems and Networks
 +
|Dec 01, 2013
 +
|Feb 25, 2014
 +
|http://www.dsn.org/
 +
|-
 +
|12th International Conference on Applied Cryptography and Network Security
 +
|Jan 10, 2014
 +
|Mar 14, 2014
 +
|http://acns2014.epfl.ch/callpapers.php
 +
|-
 +
|USENIX Annual Technical Conference
 +
|Jan 28, 2014
 +
|Apr 07, 2014
 +
|https://www.usenix.org/conference/atc14/call-for-papers
 +
|-
 +
|Audio Engineering Society (AES) Conference on Audio Forensics
 +
|Jan 31, 2014
 +
|Mar 15, 2014
 +
|http://www.aes.org/conferences/54/downloads/54thCallForContributions.pdf
 +
|-
 +
|}
  
==Error 1062==
+
See also [http://www.wikicfp.com/cfp/servlet/tool.search?q=forensics WikiCFP 'Forensics']
John Judd will be entering text here.
+
  
==Can't Use Network Share in Vista==
+
== Conferences ==
In Vista, even if you are in the administrator group, you do not necessarily run programs with administrator access (this is actually a major improvement to the security model of Windows). You can start programs, including cmd.exe, with admin privileges, but in this case, that won't help. You will not be able to image to a Network Share from Vista. There is no known workaround. This problem may exist in Windows 7.
+
{| border="0" cellpadding="2" cellspacing="2" align="top"
 +
|- style="background:#bfbfbf; font-weight: bold"
 +
! width="40%"|Title
 +
! width="20%"|Date/Location
 +
! width="40%"|Website
 +
|-
 +
|VB2013 - the 23rd Virus Bulletin International Conference
 +
|Oct 02-04<br>Berlin, Germany
 +
|http://www.virusbtn.com/conference/vb2013/index
 +
|-
 +
|8th International Conference on Malicious and Unwanted Software
 +
|Oct 22-24<br>Fajardo, Puerto Rico, USA
 +
|http://www.malwareconference.org/index.php?option=com_frontpage&Itemid=1
 +
|-
 +
|16th International Symposium on Research in Attacks, Intrusions and Defenses (RAID)
 +
|Oct 23-25<br>St. Lucia
 +
|http://www.raid2013.org/
 +
|-
 +
|5th International Workshop on Managing Insider Security Threats
 +
|Oct 24-25<br>Busan, South Korea
 +
|http://isyou.info/conf/mist13/index.htm
 +
|-
 +
|20th ACM Conference on Computer and Communications Security
 +
|Nov 04-08<br>Berlin, Germany
 +
|http://www.sigsac.org/ccs/CCS2013/
 +
|-
 +
|4th Annual Open Source Digital Forensics Conference (OSDF)
 +
|Nov 04-05<br>Chantilly, VA
 +
|http://www.basistech.com/about-us/events/open-source-forensics-conference/
 +
|-
 +
|Paraben Forensic Innovations Conference
 +
|Nov 13-15<br>Salt Lake City, UT
 +
|http://www.pfic-conference.com/
 +
|-
 +
|2013 International Conference on Information and Communications Security
 +
|Nov 20-22<br>Beijing, Chine
 +
|http://icsd.i2r.a-star.edu.sg/icics2013/index.php
 +
|-
 +
|8th International Workshop on Systematic Approaches to Digital Forensic Engineering (SADFE)
 +
|Nov 21-22<br>Hong Kong, China
 +
|http://conf.ncku.edu.tw/sadfe/sadfe13/
 +
|-
 +
|Black Hat-Regional Summit
 +
|Nov 26-27<br>Sao Paulo, Brazil
 +
|https://www.blackhat.com/sp-13
 +
|-
 +
|29th Annual Computer Security Applications Conference (ACSAC)
 +
|Dec 09-13<br>New Orleans, LA
 +
|http://www.acsac.org
 +
|-
 +
|IFIP WG 11.9 International Conference on Digital Forensics
 +
|Jan 08-10<br>Vienna, Austria
 +
|http://www.ifip119.org/Conferences/
 +
|-
 +
|AAFS 66th Annual Scientific Meeting
 +
|Feb 17-22<br>Seattle, WA
 +
|http://www.aafs.org/aafs-66th-annual-scientific-meeting
 +
|-
 +
|21st Network & Distributed System Security Symposium
 +
|Feb 23-26<br>San Diego, CA
 +
|http://www.internetsociety.org/events/ndss-symposium
 +
|-
 +
|Fourth ACM Conference on Data and Application Security and Privacy 2014
 +
|Mar 03-05<br>San Antonio, TX
 +
|http://www1.it.utsa.edu/codaspy/
 +
|-
 +
|9th International Conference on Cyber Warfare and Security (ICCWS-2014)
 +
|Mar 24-25<br>West Lafayette, IN
 +
|http://academic-conferences.org/iciw/iciw2014/iciw14-home.htm
 +
|-
 +
|DFRWS-Europe 2014
 +
|May 07-09<br>Amsterdam, Netherlands
 +
|http://dfrws.org/2014eu/index.shtml
 +
|-
 +
|2014 IEEE Symposium on Security and Privacy
 +
|May 16-23<br>Berkley, CA
 +
|http://www.ieee.org/conferences_events/conferences/conferencedetails/index.html?Conf_ID=16517
 +
|-
 +
|Techno-Security and Forensics Conference
 +
|Jun 01-04<br>Myrtle Beach, SC
 +
|http://www.techsec.com/html/Security%20Conference%202014.html
 +
|-
 +
|Mobile Forensics World
 +
|Jun 01-04<br>Myrtle Beach, SC
 +
|http://www.techsec.com/html/MFC-2014-Spring.html
 +
|-
 +
|12th International Conference on Applied Cryptography and Network Security
 +
|Jun 10-13<br>Lausanne, Switzerland
 +
|http://acns2014.epfl.ch/
 +
|-
 +
|54th Conference on Audio Forensics
 +
|Jun 12-14<br>London, England
 +
|http://www.aes.org/conferences/54/
 +
|-
 +
|2014 USENIX Annual Technical Conference
 +
|Jun 19-20<br>Philadelphia, PA
 +
|https://www.usenix.org/conference/atc14
 +
|-
 +
|44th Annual IEEE/IFIP International Conference on Dependable Systems and Networks
 +
|Jun 23-26<br>Atlanta, GA
 +
|http://www.dsn.org/
 +
|-
 +
|Symposium On Usable Privacy and Security (SOUPS) 2014
 +
|Jul 09-11<br>Menlo Park, CA
 +
|http://cups.cs.cmu.edu/soups/2013/
 +
|-
 +
|DFRWS 2014
 +
|Aug 03-06<br>Denver, CO
 +
|http://dfrws.org/2014/index.shtml
 +
|-
 +
|23rd USENIX Security Symposium
 +
|Aug 20-22<br>San Diego, CA
 +
|https://www.usenix.org/conferences
 +
|-
 +
|}
 +
 
 +
==See Also==
 +
* [[Training Courses and Providers]]
 +
==References==
 +
* [http://faculty.cs.tamu.edu/guofei/sec_conf_stat.htm Computer Security Conference Ranking and Statistic]
 +
* [http://www.kdnuggets.com/meetings/ Meetings and Conferences in Data Mining and Discovery]
 +
* http://www.conferencealerts.com/data.htm Data Mining Conferences World-Wide]

Revision as of 09:45, 25 September 2013

PLEASE READ BEFORE YOU EDIT THE LISTS BELOW
When events begin the same day, events of a longer length should be listed first. New postings of events with the same date(s) as other events should be added after events already in the list. Please use three-letter month abbreviations (i.e. Sep, NOT Sept. or September), use two digit dates (i.e. Jan 01 NOT Jan 1), and use date ranges rather than listing every date during an event(i.e. Jan 02-05, NOT Jan 02, 03, 04, 05).
Some events may be limited to Law Enforcement Only or to a specific audience. Such restrictions should be noted when known.

This is a BY DATE listing of upcoming events relevant to digital forensics. It is not an all inclusive list, but includes most well-known activities. Some events may duplicate events on the generic conferences page, but entries in this list have specific dates and locations for the upcoming event.

This listing is divided into three sections (described as follows):

  1. Calls For Papers - Calls for papers for either Journals or for Conferences, relevant to Digital Forensics (Name, Closing Date, URL)

  2. Conferences - Conferences relevant for Digital Forensics (Name, Date, Location, URL)

  3. Training Courses and Providers - Training

Contents

Calls For Papers

Please help us keep this up-to-date with deadlines for upcoming conferences that would be appropriate for forensic research.

Title Due Date Notification Date Website
IEEE Symposium on Security and Privacy Nov 13, 2013 http://www.ieee-security.org/TC/SP2014/cfp.html
DFRWS-Europe 2014 Dec 01, 2013 Mar 01, 2014 http://www.dfrws.org/2014-europe/index.shtml
44th Annual IEEE/IFIP International Conference on Dependable Systems and Networks Dec 01, 2013 Feb 25, 2014 http://www.dsn.org/
12th International Conference on Applied Cryptography and Network Security Jan 10, 2014 Mar 14, 2014 http://acns2014.epfl.ch/callpapers.php
USENIX Annual Technical Conference Jan 28, 2014 Apr 07, 2014 https://www.usenix.org/conference/atc14/call-for-papers
Audio Engineering Society (AES) Conference on Audio Forensics Jan 31, 2014 Mar 15, 2014 http://www.aes.org/conferences/54/downloads/54thCallForContributions.pdf

See also WikiCFP 'Forensics'

Conferences

Title Date/Location Website
VB2013 - the 23rd Virus Bulletin International Conference Oct 02-04
Berlin, Germany
http://www.virusbtn.com/conference/vb2013/index
8th International Conference on Malicious and Unwanted Software Oct 22-24
Fajardo, Puerto Rico, USA
http://www.malwareconference.org/index.php?option=com_frontpage&Itemid=1
16th International Symposium on Research in Attacks, Intrusions and Defenses (RAID) Oct 23-25
St. Lucia
http://www.raid2013.org/
5th International Workshop on Managing Insider Security Threats Oct 24-25
Busan, South Korea
http://isyou.info/conf/mist13/index.htm
20th ACM Conference on Computer and Communications Security Nov 04-08
Berlin, Germany
http://www.sigsac.org/ccs/CCS2013/
4th Annual Open Source Digital Forensics Conference (OSDF) Nov 04-05
Chantilly, VA
http://www.basistech.com/about-us/events/open-source-forensics-conference/
Paraben Forensic Innovations Conference Nov 13-15
Salt Lake City, UT
http://www.pfic-conference.com/
2013 International Conference on Information and Communications Security Nov 20-22
Beijing, Chine
http://icsd.i2r.a-star.edu.sg/icics2013/index.php
8th International Workshop on Systematic Approaches to Digital Forensic Engineering (SADFE) Nov 21-22
Hong Kong, China
http://conf.ncku.edu.tw/sadfe/sadfe13/
Black Hat-Regional Summit Nov 26-27
Sao Paulo, Brazil
https://www.blackhat.com/sp-13
29th Annual Computer Security Applications Conference (ACSAC) Dec 09-13
New Orleans, LA
http://www.acsac.org
IFIP WG 11.9 International Conference on Digital Forensics Jan 08-10
Vienna, Austria
http://www.ifip119.org/Conferences/
AAFS 66th Annual Scientific Meeting Feb 17-22
Seattle, WA
http://www.aafs.org/aafs-66th-annual-scientific-meeting
21st Network & Distributed System Security Symposium Feb 23-26
San Diego, CA
http://www.internetsociety.org/events/ndss-symposium
Fourth ACM Conference on Data and Application Security and Privacy 2014 Mar 03-05
San Antonio, TX
http://www1.it.utsa.edu/codaspy/
9th International Conference on Cyber Warfare and Security (ICCWS-2014) Mar 24-25
West Lafayette, IN
http://academic-conferences.org/iciw/iciw2014/iciw14-home.htm
DFRWS-Europe 2014 May 07-09
Amsterdam, Netherlands
http://dfrws.org/2014eu/index.shtml
2014 IEEE Symposium on Security and Privacy May 16-23
Berkley, CA
http://www.ieee.org/conferences_events/conferences/conferencedetails/index.html?Conf_ID=16517
Techno-Security and Forensics Conference Jun 01-04
Myrtle Beach, SC
http://www.techsec.com/html/Security%20Conference%202014.html
Mobile Forensics World Jun 01-04
Myrtle Beach, SC
http://www.techsec.com/html/MFC-2014-Spring.html
12th International Conference on Applied Cryptography and Network Security Jun 10-13
Lausanne, Switzerland
http://acns2014.epfl.ch/
54th Conference on Audio Forensics Jun 12-14
London, England
http://www.aes.org/conferences/54/
2014 USENIX Annual Technical Conference Jun 19-20
Philadelphia, PA
https://www.usenix.org/conference/atc14
44th Annual IEEE/IFIP International Conference on Dependable Systems and Networks Jun 23-26
Atlanta, GA
http://www.dsn.org/
Symposium On Usable Privacy and Security (SOUPS) 2014 Jul 09-11
Menlo Park, CA
http://cups.cs.cmu.edu/soups/2013/
DFRWS 2014 Aug 03-06
Denver, CO
http://dfrws.org/2014/index.shtml
23rd USENIX Security Symposium Aug 20-22
San Diego, CA
https://www.usenix.org/conferences

See Also

References