Microsoft Tries To Clean Up COFEE Spill

Someone spilled hot COFEE, otherwise known as Microsoft's Computer Online Forensic Evidence Extractor.

The spill or leak was noted Nov. 9 in reports from CrunchGear and Ars Technica. COFEE is a computer forensics solution that Microsoft provides free to law enforcement agencies. It's really a collection of tools packaged together on a thumb drive for easy use by police on the scene of a crime.

Now, the software has somehow become expropriated, and it's found its way onto bit torrent sites.

Essentially, COFEE is now openly distributed as pirated software. The distribution was supposed to have been controlled through the National White Collar Crime Center or INTERPOL.

Microsoft confirmed the leak Tuesday, stating that it plans to "mitigate unauthorized distribution of our technology beyond the means for which it's been legally provided," according to a statement from Richard Boscovich, senior attorney for Internet safety at Microsoft Corp. He discouraged people from downloading pirated COFEE software--not just because it's an unauthorized distribution, but because the copies could have been modified.

Boscovich debunked the idea that pirates can now use the pirated COFEE software to "build around" its use by law enforcement agencies.

"Its value for law enforcement is not in secret functionality unknown to cybercriminals," Boscovich stated. "Its value is in the way COFEE brings those tools together in a simple and customizable format for law enforcement use in the field."

It's also possible that cyber crooks could use COFEE in the same way that law enforcement agencies do--to glean information from people's computers. That point wasn't addressed in Boscovich's statement.

Microsoft has claimed that law enforcement officers can learn to use COFEE in about 10 minutes. COFEE can run "more than 150 commands on a live computer system," according to a Microsoft government Web page. It's designed to capture information before a computer system is powered down and some information is lost.

Microsoft's Web page states that COFEE is designed to help law enforcement "in their fight against cybercrime, child pornography, online fraud, and other computer-facilitated crimes."

About the Author

Kurt Mackie is online news editor, Enterprise Group, at 1105 Media Inc.

Featured

  • interconnected gears and cogs

    Integration Brings Anthropic Claude AI Models to Microsoft Copilot

    Microsoft has added Anthropic's Claude artificial intelligence models to its Microsoft 365 Copilot platform, giving enterprise users another option beyond OpenAI's models for powering workplace AI experiences.

  • Abstract tech background made of printed circuit board

    University of Kentucky Initiative to Advance AI Efforts Across the Campus and State

    The University of Kentucky has launched CATS AI (Commonwealth AI Transdisciplinary Strategy), a campuswide effort aimed at advancing AI across the institution's 17 colleges, libraries, research centers, and institutes; its academic and healthcare enterprises; and throughout the state.

  • abstract illustration of data infrastructure

    IBM to Acquire Data Infrastructure Firm Confluent in AI Push

    IBM has agreed to buy data infrastructure company Confluent for $11 billion in cash, marking the technology giant's largest acquisition in years as it seeks to capitalize on surging enterprise demand for artificial intelligence capabilities.

  • Hand holding a stylus over a tablet with futuristic risk management icons

    Why Universities Are Ransomware's Easy Target: Lessons from the 23% Surge

    Academic environments face heightened risk because their collaboration-driven environments are inherently open, making them more susceptible to attack, while the high-value research data they hold makes them an especially attractive target. The question is not if this data will be targeted, but whether universities can defend it swiftly enough against increasingly AI-powered threats.