Technicalities
So I went back to 7 WTC to visit the evidence locker on the ninth floor, where we retrieved Wesley's evidence. I had one main objective: to get as much data as possible off the five disk drives that were part of the two computers stored as evidence. I also wanted to transfer the evidence onto a more easily readable media.
Because the agents involved in the case were not familiar with the equipment in storage, I assembled my own forensic laptop system. For an operating system, I chose to use FreeBSD instead of Windows. FreeBSD is a free version of UNIX that runs on standard personal computers. There were a couple of advantages in using it for the forensic unit in this case:
The FreeBSD version of UNIX is capable of understanding ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access