Gesamtlänge aller Episoden: 6 days 1 hour 36 minutes
This week I continue the back to basics series with talk on the Windows Shimcache.
This week it's a refresher on the Windows Prefetch, a core Microsoft artifact every examiner should know.
This week I kick off a revisit of the fundamentals helpful to all new examiners.
This week I talk about Mac Logs, namely the new Unified Logging in OS X and how this impacts forensic exams.
This week I break down the different variations of the "malware analyst." Do you qualify as one?
This week I talk about the volatility plug-ins for autopsy that allow you to do memory forensics in the autopsy forensic console.