Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Alternative browsers pose challenge for cybersleuths
Cnet News ^ | August 31, 2005 | Joris Evers

Posted on 09/01/2005 12:48:22 AM PDT by Panerai

The advent of Firefox and other Web browser alternatives to Internet Explorer means cybercops have to learn new tricks for their investigations.

Internet Explorer hides nothing from cops and other investigators who examine PCs to discover which sites the user has visited. They know the location of the IE browser cache, cookie files and history and know how to read those files. Also, popular forensics tools can help out.

But that story changes when it comes to alternative browsers such as Firefox and Opera. These programs use different structures, files and naming conventions for the data investigators are after and files are in a different location on the hard drive, which can cause trouble for examiners. Furthermore, forensics software may not support the Web browsers.

Though Microsoft's IE remains the most widely used browser, these alternatives are gaining in popularity. The open-source Firefox browser in particular has been able to nibble at Microsoft's dominant share of the market. Web browser data can be important in criminal investigations because browsers keep track of a suspect's online activity.

One specific challenge with Firefox and Opera is identifying which Web addresses have been entered manually as opposed to clicked on in a hyperlink, Glenn Lewis said Wednesday in a well-attended training session on alternative browsers at the annual High Tech Crime Investigation Association event here.

The distinction may be important in a case where a suspect claims he did not intend to visit a Web site, but accidentally clicked on a link or was sent to a site automatically. It is hard to argue that if an address was physically typed into the Web browser.

(Excerpt) Read more at news.com.com ...


TOPICS: Technical
KEYWORDS: bigbrother; carnivore; firefox; ie; internetexploiter; internetexplorer; onering; opera; patriotact
Score another one for Firefox.
1 posted on 09/01/2005 12:48:22 AM PDT by Panerai
[ Post Reply | Private Reply | View Replies]

To: Panerai

I don't know how good Apple's Safari browser's "Private Browsing" mode is.


2 posted on 09/01/2005 12:51:46 AM PDT by coconutt2000 (NO MORE PEACE FOR OIL!!! DOWN WITH TYRANTS, TERRORISTS, AND TIMIDCRATS!!!! (3-T's For World Peace))
[ Post Reply | Private Reply | To 1 | View Replies]

To: Panerai

What's the value in such a feature if you're not a pedophile or the like?


3 posted on 09/01/2005 12:52:37 AM PDT by Jaysun (Democrats: We must become more effective at fooling people.)
[ Post Reply | Private Reply | To 1 | View Replies]

firefox will prefetch if teamed with google. they leave this on by default...so you can have "bad" files/pix on your HD and not even know it


4 posted on 09/01/2005 12:52:37 AM PDT by KneelBeforeZod ( I'm going to open Cobra Kai dojos all over this valley!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: coconutt2000

Stiuped question, but where is that option on private browsing in Safari preferances ?


5 posted on 09/01/2005 12:56:12 AM PDT by Panerai
[ Post Reply | Private Reply | To 2 | View Replies]

To: Jaysun
Let's suppose that someone has access to your computer through a trojan horse.
6 posted on 09/01/2005 12:57:58 AM PDT by Panerai
[ Post Reply | Private Reply | To 3 | View Replies]

To: KneelBeforeZod
Hey, how's the Cobra Kai dojo thing going? I'm looking for someone to open combo car washes with me. The Sushi deli/ shoe repair guys backed out on me, so maybe we could open Cobra Kai Car washes. Put one in front of every Starbucks.
7 posted on 09/01/2005 12:59:25 AM PDT by Jaysun (Democrats: We must become more effective at fooling people.)
[ Post Reply | Private Reply | To 4 | View Replies]

To: Panerai

In the Safari menu right under the option for blocking pop up windows.

I should say that it is Safari 2.0, on OS X Tiger.


8 posted on 09/01/2005 1:00:13 AM PDT by coconutt2000 (NO MORE PEACE FOR OIL!!! DOWN WITH TYRANTS, TERRORISTS, AND TIMIDCRATS!!!! (3-T's For World Peace))
[ Post Reply | Private Reply | To 5 | View Replies]

To: Panerai
Let's suppose that someone has access to your computer through a trojan horse.

I see. That would be bad, my having to explain all of the midget porn sites and what not. No, I see what you're saying. I was under the impression that they were only talking about physically searching the hard drives.
9 posted on 09/01/2005 1:02:01 AM PDT by Jaysun (Democrats: We must become more effective at fooling people.)
[ Post Reply | Private Reply | To 6 | View Replies]

To: Jaysun
reWhat's the value in such a feature if you're not a pedophile or the like?
 
How about basic privacy?
10 posted on 09/01/2005 1:02:27 AM PDT by tomakaze (Cuius testiculos habes, habeas cardia et cerebellum.)
[ Post Reply | Private Reply | To 3 | View Replies]

To: coconutt2000

Thanks, that explains why I did not see it, still using 10.3.9


11 posted on 09/01/2005 1:03:39 AM PDT by Panerai
[ Post Reply | Private Reply | To 8 | View Replies]

To: Panerai

12 posted on 09/01/2005 1:04:07 AM PDT by coconutt2000 (NO MORE PEACE FOR OIL!!! DOWN WITH TYRANTS, TERRORISTS, AND TIMIDCRATS!!!! (3-T's For World Peace))
[ Post Reply | Private Reply | To 5 | View Replies]

To: Panerai

No problem. I thought that might be the case for you. I should've indicated the version number.


13 posted on 09/01/2005 1:04:52 AM PDT by coconutt2000 (NO MORE PEACE FOR OIL!!! DOWN WITH TYRANTS, TERRORISTS, AND TIMIDCRATS!!!! (3-T's For World Peace))
[ Post Reply | Private Reply | To 11 | View Replies]

To: tomakaze
How about basic privacy?

From whom?
14 posted on 09/01/2005 1:05:39 AM PDT by Jaysun (Democrats: We must become more effective at fooling people.)
[ Post Reply | Private Reply | To 10 | View Replies]

To: coconutt2000

Just love the ease with which screen caps can be done under OS X, I do it all the time to save info.


15 posted on 09/01/2005 1:06:02 AM PDT by Panerai
[ Post Reply | Private Reply | To 12 | View Replies]

To: coconutt2000

But cookies will still execute in Private Browsing if you go to their defining web page.

So manually clean 'em out from time to time. ;-)


16 posted on 09/01/2005 1:07:13 AM PDT by Prince Charles
[ Post Reply | Private Reply | To 12 | View Replies]

To: Panerai

True, but I borrowed that screen capture from someone's blog. :-) Easier than doing my own and uploading it to a web server. :-)


17 posted on 09/01/2005 1:09:34 AM PDT by coconutt2000 (NO MORE PEACE FOR OIL!!! DOWN WITH TYRANTS, TERRORISTS, AND TIMIDCRATS!!!! (3-T's For World Peace))
[ Post Reply | Private Reply | To 15 | View Replies]

To: Jaysun

How about from a Hitlery Administration?


18 posted on 09/01/2005 1:10:16 AM PDT by SoDak
[ Post Reply | Private Reply | To 14 | View Replies]

To: Jaysun
RE: From whom?
 
government snoops, who else?
19 posted on 09/01/2005 1:11:50 AM PDT by tomakaze (Cuius testiculos habes, habeas cardia et cerebellum.)
[ Post Reply | Private Reply | To 14 | View Replies]

To: Jaysun
What's the value in such a feature if you're not a pedophile or the like?

What's the value of a sealed envelope for private correspondence, instead of a postcard? I mean, only pedophiles would use envelopes, because you have nothing to hide. Right?

20 posted on 09/01/2005 1:17:20 AM PDT by Hank Rearden (Never allow anyone who could only get a government job attempt to tell you how to run your life.)
[ Post Reply | Private Reply | To 3 | View Replies]

To: Hank Rearden

Very well said.


21 posted on 09/01/2005 1:19:38 AM PDT by SoDak
[ Post Reply | Private Reply | To 20 | View Replies]

To: Jaysun
From whom?

Moronic, greedy, f$%^^ng politicians. See my tagline. Then email me all your ATM PINs and website passwords, unless you think you need to hide something. You don't, do you, hmmmmmmm?

22 posted on 09/01/2005 1:22:30 AM PDT by Hank Rearden (Never allow anyone who could only get a government job attempt to tell you how to run your life.)
[ Post Reply | Private Reply | To 14 | View Replies]

To: Hank Rearden
What's the value of a sealed envelope for private correspondence, instead of a postcard? I mean, only pedophiles would use envelopes, because you have nothing to hide. Right?

Is that the best analogy you could come up with? And why so huffy puffy? Have you had scores of sleuths knocking on your door lately? Neither have I.

As I mentioned in a subsequent post, I was under the impression that they meant physical hard drive searches - and any pedophile worth his salt just switched browsers.
23 posted on 09/01/2005 1:26:01 AM PDT by Jaysun (Democrats: We must become more effective at fooling people.)
[ Post Reply | Private Reply | To 20 | View Replies]

To: Jaysun

Your hard drive is naked to any virus under Windows.


24 posted on 09/01/2005 1:27:32 AM PDT by HiTech RedNeck (No wonder the Southern Baptist Church threw Greer out: Only one god per church! [Ann Coulter])
[ Post Reply | Private Reply | To 23 | View Replies]

To: Jaysun
I am surprized sometimes at how many around FR are so ready to dismiss privacy concerns, if it appears that it would only relate to porn.
25 posted on 09/01/2005 1:30:47 AM PDT by Panerai
[ Post Reply | Private Reply | To 23 | View Replies]

To: Panerai

If you are concerned with private web browsing, especially if you use any sort of internet cafe or kiosk computers, buy a 128mb or 256 mb usb2 pen drive, and follow the directions at this link:
http://www.webuser.co.uk/forums/showflat.php/Cat/0/Number/148300/an/0/page/7

All cache files are stored on the pen drive. Somewhat slower browsing, but it leaves no trace on the computer once the allocated RAM is recovered/cleared by the system.


26 posted on 09/01/2005 1:32:23 AM PDT by JerseyHighlander
[ Post Reply | Private Reply | To 1 | View Replies]

To: Hank Rearden
Moronic, greedy, f$%^^ng politicians. See my tagline. Then email me all your ATM PINs and website passwords, unless you think you need to hide something. You don't, do you, hmmmmmmm?

STFU nutjob. My question was not only valid (would pedophiles not find this useful) but it wasn't directed to you. Use whatever browser you'd like, one that Byrd & Clinton can't easily crack when they meet in their lead-lined bunker to look over your browsing habits and discuss your grocery shopping preferences.
27 posted on 09/01/2005 1:33:54 AM PDT by Jaysun (Democrats: We must become more effective at fooling people.)
[ Post Reply | Private Reply | To 22 | View Replies]

To: Panerai
I am surprized sometimes at how many around FR are so ready to dismiss privacy concerns, if it appears that it would only relate to porn.

Didn't we already talk about this? I was mistaken, remember? I didn't say "porn" I said "pedophilia", and it was half jest.
28 posted on 09/01/2005 1:37:49 AM PDT by Jaysun (Democrats: We must become more effective at fooling people.)
[ Post Reply | Private Reply | To 25 | View Replies]

LE preferences are kinda near the bottom of my list when it comes to selecting a browser.


29 posted on 09/01/2005 1:37:56 AM PDT by D-fendr
[ Post Reply | Private Reply | To 27 | View Replies]

To: Panerai

Any "investigator" who cannot find Firefox's cache or history file deserves to be ... mocked, or something. "APPLICATION PUTS DATA IN DIFFERENT PLACE THAN OTHER APPLICATION" is hardly the tech story of the century, nor is it likely to freeze any real forensic investigators in their tracks.


30 posted on 09/01/2005 1:40:55 AM PDT by Caesar Soze
[ Post Reply | Private Reply | To 1 | View Replies]

To: Jaysun
My question was not only valid (would pedophiles not find this useful) but it wasn't directed to you.

That is a valid question, but not a useful one. Pedophiles find lots of things useful -- credit cards, hot and cold running water, pizza delivery. Juxtaposing any given subject with a trigger word like "pedophile" is nothing more than a disingenuous smear. Juxtaposing privacy or privacy-enhancing tools with pedophiles reeks of surveillance statism.

As to whom your question is directed ... you're posting on a public forum. If you really don't want other people reading your questions and proffering responses to them, I advise you to write your questions on a piece of paper, put them in an envelope, and post them. (You could also use something like PGP, but pedophiles use PGP!)

31 posted on 09/01/2005 1:47:38 AM PDT by Caesar Soze
[ Post Reply | Private Reply | To 27 | View Replies]

To: JerseyHighlander

Nice link. Thanks.


32 posted on 09/01/2005 2:05:59 AM PDT by Musket
[ Post Reply | Private Reply | To 26 | View Replies]

To: Caesar Soze; Panerai; Hank Rearden
That is a valid question, but not a useful one. Pedophiles find lots of things useful -- credit cards, hot and cold running water, pizza delivery. Juxtaposing any given subject with a trigger word like "pedophile" is nothing more than a disingenuous smear. Juxtaposing privacy or privacy-enhancing tools with pedophiles reeks of surveillance statism.

The subject of the article wasn't "credit cards, hot and cold running water, pizza delivery...." Surveillance Statism? Are you guys all in the same meth lab?

Never mind. You know what? Guilty as charged fellas. I'm a miserable wretch and I appreciate any mercy (even though I'm undeserving) that you can muster before handing down the verdict for this evil thing I've done. You've exposed me as someone who, against his own best interest, actually hates privacy. Yes, I wish there were a guard at every stop sign demanding to see your papers before allowing you passage.

Look, I think of most things in terms of business because that's what I spend most of my time on. I know very little about "Firefox" and "Opera". When I looked at the article I saw the "problem" as a competitive edge and asked myself who you'd market such a feature to, and how? The first thing that popped into my head was a pedophile that couldn't send the $19.95 plus shipping and handling fast enough. I chuckled, I typed what was on my mind and the first response mentioned "viruses". Problem solved in my mind. Thanks, that would work. The next thing I know I'm someone that wants to banish curtains, tap phones, and promote the mark of the beast.

All of this was unbeknownst to you, I'll grant you that. But meaningless overreactions like this are usually only found on DU. Now I'll shut up and allow you the last word. After reading anything you might have to say, I'll move along without comment. Good day gents.
33 posted on 09/01/2005 2:36:20 AM PDT by Jaysun (Democrats: We must become more effective at fooling people.)
[ Post Reply | Private Reply | To 31 | View Replies]

To: Caesar Soze
nor is it likely to freeze any real forensic investigators in their tracks.

No, but it confuses the heck out of some reporters, who think the sun shines out of Bill Gates's backside.

34 posted on 09/01/2005 4:26:29 AM PDT by Izzy Dunne (Hello, I'm a TAGLINE virus. Please help me spread by copying me into YOUR tag line.)
[ Post Reply | Private Reply | To 30 | View Replies]

To: Panerai

Tell me where did you sleep last night bump.


35 posted on 09/01/2005 5:21:42 AM PDT by clyde asbury (#)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Jaysun

"What's the value in such a feature if you're not a pedophile or the like?"

Why not force everyone to use postcards?

WHAT? You like envelopes?

What do you have to hide?


36 posted on 09/01/2005 4:28:08 PM PDT by adam_az (It's the border, stupid!)
[ Post Reply | Private Reply | To 3 | View Replies]

To: Jaysun

I didn't realize that child rape was performed with a web browser.

Thanks for the insight!


37 posted on 09/01/2005 4:34:08 PM PDT by adam_az (It's the border, stupid!)
[ Post Reply | Private Reply | To 33 | View Replies]

To: Panerai
"Each browser has its intricacies," he said. "You can find some details online, but often it is difficult."

Hmmm, maybe visit Mozilla.org, which will not only tell you everything about the browser, but give you the source code too? Please tell me this guy isn't among our best and brightest, or we stand no chance against the criminals.

38 posted on 09/01/2005 4:40:17 PM PDT by antiRepublicrat
[ Post Reply | Private Reply | To 1 | View Replies]

To: KneelBeforeZod
firefox will prefetch if teamed with google. they leave this on by default...so you can have "bad" files/pix on your HD and not even know it

Luckily, at least with the headers, they're marked as Google prefetch so people will know you didn't actively click on anything.

39 posted on 09/01/2005 4:41:06 PM PDT by antiRepublicrat
[ Post Reply | Private Reply | To 4 | View Replies]

To: Panerai; Bush2000; for-q-clinton; Golden Eagle

I'm waiting for the OSS paranoids to come on and say "See, not only is it communist, but it hurts our law enforcement efforts! Firefox could cause a terrorist to go free!"


40 posted on 09/01/2005 4:42:49 PM PDT by antiRepublicrat
[ Post Reply | Private Reply | To 1 | View Replies]

To: Jaysun
Early on in the hayday of the Internet boom, I was going to market a completely anonymous websurfing/tunneling program; however, I chose not to because my main clients would be Pedophiles, drug dealers, and terrorists.

Plus the lawsuits would bind me up pretty good. I now other services exist today, but I guess I'm not in the right customer circles to catch their advertisements.

There is a balancing act between privacy and marketing things to pedophiles. I'm not sure what the best answer is though. I don't want to have a tracker placed on my computer so the feds can see that I was doing legal, but embarassing things online.

41 posted on 09/01/2005 5:32:37 PM PDT by for-q-clinton (If at first you don't succeed keep on sucking until you do succeed)
[ Post Reply | Private Reply | To 33 | View Replies]

To: Panerai
Internet Explorer hides nothing from cops and other investigators who examine PCs to discover which sites the user has visited. They know the location of the IE browser cache, cookie files and history and know how to read those files.

Translation: Cook-book drones can't think on their feet and come up with a new approach when their standard recipe doesn't work.

42 posted on 09/06/2005 6:15:57 AM PDT by steve-b (A desire not to butt into other people's business is eighty percent of all human wisdom)
[ Post Reply | Private Reply | To 1 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson