Ranked #1
DFSP # 211 - Mac Forensics with Steve Whalen
DFSP # 211 - Mac Forensics with Steve Whalen
This week I interview Steve Whalen from SUMURI about the current Mac Forensic landscape
3 Mar 2020
•
33mins
Ranked #2
DFSP # 089 - So you want to DFIR?
DFSP # 089 - So you want to DFIR?
This week I interview a DFIR practitioner about some of the little known facts about a career in the industry.
31 Oct 2017
•
34mins
Similar Podcasts
Ranked #3
DFSP # 103 - B2B USB Forensics
DFSP # 103 - B2B USB Forensics
This week I talk about resolving USB usage back to specific systems and user accounts.
6 Feb 2018
•
13mins
Ranked #4
DFSP # 096 - OS X Unified Logging
DFSP # 096 - OS X Unified Logging
This week I talk about Mac Logs, namely the new Unified Logging in OS X and how this impacts forensic exams.
19 Dec 2017
•
14mins
Ranked #5
DFSP # 102 - B2B Windows Explorer
DFSP # 102 - B2B Windows Explorer
This week I talk about Windows Explorer evidence.
30 Jan 2018
•
14mins
Ranked #6
DFSP # 087 - DFIR Degrees
DFSP # 087 - DFIR Degrees
This week I interview a DFIR professional about his decision to get a Masters Degree in cyber security.
17 Oct 2017
•
30mins
Ranked #7
DFSP # 074 - Detecting Lateral Movement
DFSP # 074 - Detecting Lateral Movement
This week I review a document put out by the Japan Computer Emergency Response Team Coordination Center on "Detecting La... Read more
18 Jul 2017
•
16mins
Ranked #8
DFSP # 204 - SOF ELK
DFSP # 204 - SOF ELK
This week I talk about SOF ELK, a freely available pre-built virtual appliance for DFIR work
14 Jan 2020
•
13mins
Ranked #9
DFSP # 113 - Dead Simple Timelines
DFSP # 113 - Dead Simple Timelines
This week I do a tool review of CYLR and CDQR - perhaps the easiest way to build an awesome timeline
17 Apr 2018
•
16mins
Ranked #10
DFSP # 091 - Red Team Field Manual
DFSP # 091 - Red Team Field Manual
This week I talk about RTFM, the companion to the blue team field manual that's filled with over 1000 commands for windo... Read more
14 Nov 2017
•
10mins
Ranked #11
DFSP # 141 - Logon Triage
DFSP # 141 - Logon Triage
This week I talk about investigation strategies for logon events.
30 Oct 2018
•
12mins
Ranked #12
DFSP # 081 - OS X Collector
DFSP # 081 - OS X Collector
This week I go over OSX Collector, a freely available tool to collect and preprocess Mac artifacts for DFIR investigatio... Read more
5 Sep 2017
•
25mins
Ranked #13
DFSP # 077 - Crypto Currency 101
DFSP # 077 - Crypto Currency 101
This week I break down crypto currency concepts for new computer forensic examiners.
8 Aug 2017
•
19mins
Ranked #14
DFSP # 070 - Notepad++
DFSP # 070 - Notepad++
This week I talk a Notepad++, a freely available code editing tool with some great options built in that are useful for ... Read more
20 Jun 2017
•
18mins
Ranked #15
DFSP # 148 - Threat Hunting Tips
DFSP # 148 - Threat Hunting Tips
This week I talk about tips for building a threat hunting program.
18 Dec 2018
•
34mins
Ranked #16
DFSP # 124 - iOS USB Restricted Mode
DFSP # 124 - iOS USB Restricted Mode
This week I talk about the security changes coming with iOS 11.4
3 Jul 2018
•
20mins
Ranked #17
DFSP # 145 - PDF Forensics
DFSP # 145 - PDF Forensics
This week I talk about PDF analysis tools to check for malicious indictors in PDFs.
27 Nov 2018
•
13mins
Ranked #18
DFSP # 176 - Cloud Incident Response
DFSP # 176 - Cloud Incident Response
This week I talk about incident response in container deployments.
2 Jul 2019
•
17mins
Ranked #19
DFSP # 131 - PIDS
DFSP # 131 - PIDS
This week I talk about PIDS in their uses and computer forensic investigations.
21 Aug 2018
•
21mins
Ranked #20
DFSP # 127 - DNS & Forensics
DFSP # 127 - DNS & Forensics
This week I talk about DNS and forensics
24 Jul 2018
•
20mins