DFIR 15
- Speaking at NCCC 2024
- C5W Certified Malware Analyst (Friday Giveway) #1
- Malware Tools, Tips and Tricks
- Windows Sandbox Scripts
- Memory Forensics – RansomCare Investigation Case 1
- Challenge #9 – Encrypt Them All Case
- Challenge #8 – NTFS File System Case
- Challenge #7 – SysInternals Case
- Investigating USB Drives using Mount Points Not Drive Letters
- No Drive Letter, No USB Evidence? Think Again!
- Howto Setup and use the CuckooVM v2
- Acquiring Linux Memory using AVML and Using it with Volatility
- Forensic Acquisitions over Netcat
- Anti-Forensics: Leveraging OS and File System Artifacts
- Disable Automount for SIFT