This Month In 4n6 – February – 2021

A monthly wrap-up of the DFIR news for February 2021. Thank you to those Patreon donors for the last month. This project takes a lot of time, so it’s very much appreciated that people see enough value in it to contribute back 🙂 If you are a Patreon donor the show notes will be found here. Special […]

Week 9 – 2021

Brian MaloneyYour AV is Trying to Tell You Something: VBN’s Part 1 Doug Metz at Baker Street ForensicsCSIRT-Collect Flynn Weeks at ‘The What2Log Blog’EventRecordID: A Hidden XML Tag Gabriele Zambelli at ‘Forense nella Nebbia’Building a Linux profile for Volatility 2 and 3 Kyle SongBlog #25: Importance of Drive Trim in Forensic Imager part 1. [KR] […]

Week 8 – 2021

ThinkDFIRMetaspike CTF – Week 6 – “HODL onto your timestamps” AbdulRhman Alfaifi at U0041Exploring Windows Artifacts : LNK Files Anatoly Tykushin at Group IBThe source of everything: forensic examination of incidents involving source code leaks Brian MaloneyYour AV is Trying to Tell You Something: AVMan.log/Daily AV Log Cellebrite Overview of Parsed Data in Cellebrite Physical […]

Week 7 – 2021

Also I’ll be delivering a SANS @Mic talk this Wednesday, 17 February at 1PM AEDT (2AM UTC, sorry!). The talk is aimed at people new to the field, talking about how to get started learning about digital forensics by testing and experimenting. You can register here Andrea Fortuna at ‘So Long, and Thanks for All […]

Week 6 – 2021

ThinkDFIRMetaspike CTF – Week 5 – “Spot the DFIRence” Abhiram’s Blog Mr EvilPepo [series] – TrollCAT CTF 2021 S3cr3t – TrollCAT CTF 2021 Andrea Fortuna at ‘So Long, and Thanks for All the Fish’Windows registry Transaction Logs in forensic analysis Brian MaloneyYour AV is Trying to Tell You Something: rawlog.log DFIR Review Extracting and Decrypting […]

Week 5 – 2021

Jessica Hyde at Magnet ForensicsAndroid Motion Photos in Magnet AXIOM Doug Metz at Baker Street ForensicsForensic Imaging a Microsoft Surface Pro Brian MaloneyYour AV is Trying to Tell You Something: tralog.log Matt Goeckel at CellebriteHow to Use The Project Tree and Analyzed Data in Cellebrite Physical Analyzer to Find Data Fast Chris Vance at ‘D20 […]

Week 4 – 2021

Just a reminder that DFRWS APAC 2021 is happening this week! Because it’s virtual it’s also quite affordable and you can find more details here Mark Spencer at Arsenal ReconBitLocker for DFIR – Part III BelkasoftAnalyzing videos with multiple video streams in digital forensics Brian MaloneyYour AV is Trying to Tell You Something: seclog.log Kevin […]

Week 3 – 2021

DFRWS APAC 2021 is almost here! Only a week and a half to go. The program has been released, and because it’s virtual, anyone can join easily through the magic of the Internets.DFRWS APAC 2021 Brian MaloneyYour AV is Trying to Tell You Something: syslog.log Christiaan BeekVHD Forensics — the sequel Craig Ball at ‘Ball in your […]

Week 2 – 2021

Jordan Drysdale at Black Hills Information SecurityA Sysmon Event ID Breakdown Brian MaloneyYour AV is Trying to Tell You Something: Log Lines Deagler’s 4n6 BlogAn Android Casting (Device) Story: “cast.db” Kovar & Associates UAV THREATS TO THE OIL AND GAS INDUSTRY PART 1: THE THREAT IS REAL UAV THREATS TO THE OIL AND GAS INDUSTRY […]