top of page

Walkthrough Page
Search


Azure Active Directory Incident Response Cheat Sheet: Tools and Techniques
In this cheat sheet, we'll take a look at some of the key tools and techniques that can be used to perform Azure Incident Response.

Idan Buller
Jan 16, 2023
Â
Â
Â


Uncovering the Secrets of NTFS File Records: A Digital Forensics Guide
Windows file system forensics is a vital aspect of digital forensics investigations, as it allows examiners to recover and analyze evidence.

Idan Buller
Jan 9, 2023
Â
Â
Â


MFT Journaling Forensics - Tools & Techniques
The forensic value of MFT journals is that they can be used to find evidence of file creations, deletions, renames, etc.

Idan Buller
Jul 13, 2022
Â
Â
Â


Analyzing Shimcache Forensics - Python Forensics #1
We are going to extract this valuable information with a well-known tool made by Eric Zimmermann, and use a python-based addon I created.

Idan Buller
Mar 13, 2022
Â
Â
Â


Browser Forensics - Tools & Techniques
The amount of information stored locally in the browser's folders is huge and can be super useful for forensic analysis.

Idan Buller
Feb 25, 2022
Â
Â
Â


EVTX Forensics - Investigate Windows Events
Windows event logs provide a rich source of forensic information for threat hunting and incident response investigations.

Idan Buller
Dec 23, 2021
Â
Â
Â


Linux Forensics - The Complete CheatSheet
While Windows forensics is widely covered via several courses and articles, there are fewer resources introducing it to the Linux Forensics

Idan Buller
Sep 27, 2021
Â
Â
Â


Execution Evidence - Prefetch Files
The Evidence of execution might be your forensic solution.

Idan Buller
Sep 16, 2021
Â
Â
Â


3 Reversing Challenges - HackTheBox
HackTheBox Reversing Challenges - Baby_RE, Bypass & Impossible Password.

Idan Buller
Jan 31, 2021
Â
Â
Â


Shadow Copies - The wiped out Evidence
Shadow Copies is the one thing you need to add your Forensics activity list.

Idan Buller
Dec 23, 2020
Â
Â
Â


RDP Forensics - Logging, Detection and Forensics
RDP is that thing you want to investigate...

Idan Buller
Nov 15, 2020
Â
Â
Â


Registry Forensics - A Goldmine
Registry Hives are one of the major evidence providers for us, the analysts.

Idan Buller
Nov 7, 2020
Â
Â
Â


Python Ransomware
One of the fewest Python based Ransomware...

Idan Buller
Oct 28, 2020
Â
Â
Â


Shodan Tutorial
Shodan is a search engine for finding devices and their types, that exist on the world wide web.

Idan Buller
Oct 28, 2020
Â
Â
Â
bottom of page