Technicalities

So I went back to 7 WTC to visit the evidence locker on the ninth floor, where we retrieved Wesley's evidence. I had one main objective: to get as much data as possible off the five disk drives that were part of the two computers stored as evidence. I also wanted to transfer the evidence onto a more easily readable media.

Because the agents involved in the case were not familiar with the equipment in storage, I assembled my own forensic laptop system. For an operating system, I chose to use FreeBSD instead of Windows. FreeBSD is a free version of UNIX that runs on standard personal computers. There were a couple of advantages in using it for the forensic unit in this case:

  1. The FreeBSD version of UNIX is capable of understanding ...

Get HIGH-TECH CRIMES REVEALED: CYBERWAR STORIES FROM THE DIGITAL FRONT now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.