Week 09 – 2022

Kevin RipaThe Truth About USB Device Serial Numbers – (and the lies your tools tell) BelkasoftWhy RAM dumping is so important and what tool to use? CellebriteIsolating Devices to Preserve Evidence Cheeky4n6MonkeyMonkey Attempts To Digest Some Google Takeout (DetectedActivitys) Digital Forensics MyanmarCHFI-V10-Dark Web-Note ForensafeInvestigating Windows Recycle Bin Herbie Zimmerman at “Lost in Security”2022-02-26 Quick Post […]

Week 08 – 2022

Abdallah Elnoty2019 Defcon DFIR CTF Write-up (Memory Forensics) Camille LoreParsing Google Voice Search CellebriteCellebrite Announces Fourth Quarter and Full Year 2021 Results Dr. Neal Krawetz at ‘The Hacker Factor Blog’Three Minute Forgeries Elcomsoft Dude, Where Are My Messages? GPU Acceleration On The Cheap: Using Affordable Video Cards to Break Passwords Faster ForensafeInvestigating PowerShell InfoSec Write-ups […]

Week 07 – 2022

ThinkDFIRTracking screenshots with LNK files Adam at HexacornAnalysing NSRL data set for fun and because… curious, Part 2 Awake SecurityForensic Investigation of the MEGAcmd Client Cellebrite Crime and Terrorism Have Changed: Today’s Investigators Rely on Digital Evidence How Digital Analysts Manage the Impact of Malware Nandeesha B at NII ConsultingThreat actor groups are targeting VMware […]

Week 06 – 2022

Digital Forensics MyanmarWindow Forensics With EZ-Tools (Part 1+2) diyinfosecWhy learning a Forensic Artifact matters? Elcomsoft checkm8 Extraction of iPhone 8, 8 Plus and iPhone X iPhone X, DFU mode and checkm8 Simon Wong at ExpelAttack trend alert: AWS-themed credential phishing technique ForensafeInvestigating User Accounts Lee Whitfield at Forensic 4castMac Randomization in Windows Forensic-Research [ART100] Digital […]

This Month In 4n6 – January – 2022

A monthly wrap-up of the DFIR news for January 2022. Thank you to those Patreon donors for the last month. This project takes a lot of time, so it’s very much appreciated that people see enough value in it to contribute back 🙂 If you are a Patreon donor the show notes will be found here. Special […]