shadawck / awesome-anti-forensic

Tools and packages that are used for countering forensic activities, including encryption, steganography, and anything that modify attributes. This all includes tools to work with anything in general that makes changes to a system for the purposes of hiding information.
https://shadawck.github.io/awesome-anti-forensic/
Other
770 stars 86 forks source link

Add BusKill #3

Closed maltfield closed 2 years ago

maltfield commented 2 years ago

BusKill is an open-source hardware and software project that uses a hardware tripwire/dead-man-switch (a usb cable with a magnetic breakaway) to trigger your computer to lock or shutdown if the user is physically separated from their machine.

The following guide describes how BusKill can be configured to wipe the LUKS Header (containing the FDE key) and its metadata. It shows a video demo where the machine wiped the keys & powered-off in <6 seconds, and it includes a post-execution forensic analysis in Kali with bulk_extractor

Please consider adding this tool to your awesome-forensics list

shadawck commented 2 years ago

Nice project ! It's added and I will put it in the hardware section when I finish the rework of the list