DFIR Playbook - Disk Images
Introduction This post aims to replicate my physical playbook on Disk Images and includes the following tools
Introduction This post aims to replicate my physical playbook on Disk Images and includes the following tools
Preface I am by no means a programming, or RE expert. But I’m going to have a go at explaining the issue of finding the needle in a haystack of an XOR key us...
Introduction I’ve had a few colleagues ask me how I have a full featured Bash IDE for courses I have developed; So I thought i’d make a post to show people h...
Introduction I found recently during a CTF Memory image challenge, that analysing memory images from VMWare wasn’t necessarily as easy as just having the rig...
Last Update 15APR21 - Added filefrag command
Introduction A tabled summary of common commands used