Getting Started with Fuji - The Logical Choice for Mac Imaging
1.3K views3 days ago
RADAR Contact! An Obscure Evidence of Execution Artifact
3.7K views1 month ago
Be Kind, Rewind... The USN Journal
3.3K views3 months ago
NTFS FILE Record Reuse
2.7K views4 months ago
13Cubed XINTRA Lab Walkthrough
4.5K views5 months ago
Linux Memory Forensics Challenge
3.6K views6 months ago
Introduction to Windows Forensics
13Cubed
188K views7 years ago
Windows SRUM Forensics
13Cubed
22K views7 years ago
Windows MACB Timestamps (NTFS Forensics)
13Cubed
29K views7 years ago
Windows NTFS Index Attributes ($I30 Files)
13Cubed
22K views7 years ago
LNK Files and Jump Lists
13Cubed
33K views7 years ago
Introduction to Plaso Heimdall
13Cubed
13K views7 years ago
Introduction to Memory Forensics
13Cubed
81K views7 years ago
Windows Memory Analysis
13Cubed
31K views7 years ago
Introduction to Redline
13Cubed
41K views7 years ago
Introduction to Redline - Update
13Cubed
7.6K views7 years ago
Volatility Profiles and Windows 10
13Cubed
28K views7 years ago
Windows Process Genealogy
13Cubed
26K views6 years ago
Some Assembly Required
13Cubed
15K views6 years ago
Payload Distribution Format
13Cubed
6.7K views6 years ago
Juicy PDFs
13Cubed
8.1K views6 years ago
Visual Analysis with ProcDOT
13Cubed
14K views6 years ago
Finding Evil with YARA
13Cubed
24K views5 years ago
Introduction to Hashcat
205K views7 years ago
Introduction to Windows Forensics
188K views7 years ago
Email Header Analysis and Forensic Investigation
159K views5 years ago
Introduction to Memory Forensics
81K views7 years ago
The Weird Windows Feature You've Never Heard Of
54K views10 months ago
Introduction to Redline
41K views7 years ago