DFSP # 391 - Investigation Lifecycle
DFSP # 391 - Investigation Lifecycle
This week I'm talking about The NIST (National Institute of Standards and Technology) investigation lifecycle. The NIST ... Read more
15 Aug 2023
•
26mins
DFSP # 390 - SSH Triage
DFSP # 390 - SSH Triage
This week I'm talking about linux forensic triage strategy. In particular, I'm covering SSH. SSH traffic comes up in man... Read more
8 Aug 2023
•
17mins
Similar Podcasts
DFSP # 389 - $Usnrl
DFSP # 389 - $Usnrl
The USN Journal, also known as the Update Sequence Number Journal, is a feature of the Windows operating system that ser... Read more
1 Aug 2023
•
15mins
DFSP # 388 - Web 3.0 Talk with SUMURI
DFSP # 388 - Web 3.0 Talk with SUMURI
This week Jason Roslewicz from SUMURI returns for some web 3.0 and virtual reality talk.
25 Jul 2023
•
38mins
DFSP # 387 - Network Share Modifications
DFSP # 387 - Network Share Modifications
This week I talk about adding, modifying, and removing network shares through the lens of detecting lateral movement.
18 Jul 2023
•
20mins
DFSP # 386- The Three Task Hosts
DFSP # 386- The Three Task Hosts
This week I break down the three Windows task hosts from a DFIR point of view.
11 Jul 2023
•
12mins
DFSP # 385 - Network Share Access
DFSP # 385 - Network Share Access
This week I talk about network share access events and lateral movement detection.
4 Jul 2023
•
19mins
DFSP # 384 - Cloud Talk with SUMURI
DFSP # 384 - Cloud Talk with SUMURI
This week Jason Roslewicz from SUMURI returns for some cloud talk.
27 Jun 2023
•
1hr 16mins
DFSP # 383 - WMI Exploitation
DFSP # 383 - WMI Exploitation
This week I talk about the exploitation of the Windows Management Instrumentation application.
20 Jun 2023
•
20mins
DFSP # 382 - Protocol Buffers
DFSP # 382 - Protocol Buffers
This week Chris Currier and I talk about mobile forensics and protocol buffers.
13 Jun 2023
•
40mins