Now displaying: January, 2017
Jan 31, 2017
This week I talk File Use & Knowledge investigations involving virtual machines. This is mainly from a dead-box exam point-of-view.
Jan 24, 2017
This week I talk about SRUM, a windows artifact with some significant forensic value for both File Use & Knowledge investigations as well as Incident Response.
Jan 17, 2017
This week I talk about considerations for digital evidence integrity when collection evidence on-scene from a live system.
Jan 10, 2017
This week I talk about surviving mobile App timestamps.
Jan 3, 2017
This week I share my thoughts on setting DFIR goals for the coming year. I go over seven points worth focusing on for professional development.