top of page

Walkthrough Page
Search


Azure Active Directory Incident Response Cheat Sheet: Tools and Techniques
In this cheat sheet, we'll take a look at some of the key tools and techniques that can be used to perform Azure Incident Response.

Idan Buller
Jan 16, 2023


Uncovering the Secrets of NTFS File Records: A Digital Forensics Guide
Windows file system forensics is a vital aspect of digital forensics investigations, as it allows examiners to recover and analyze evidence.

Idan Buller
Jan 9, 2023


MFT Journaling Forensics - Tools & Techniques
The forensic value of MFT journals is that they can be used to find evidence of file creations, deletions, renames, etc.

Idan Buller
Jul 13, 2022


Analyzing Shimcache Forensics - Python Forensics #1
We are going to extract this valuable information with a well-known tool made by Eric Zimmermann, and use a python-based addon I created.

Idan Buller
Mar 13, 2022


Browser Forensics - Tools & Techniques
The amount of information stored locally in the browser's folders is huge and can be super useful for forensic analysis.

Idan Buller
Feb 25, 2022


EVTX Forensics - Investigate Windows Events
Windows event logs provide a rich source of forensic information for threat hunting and incident response investigations.

Idan Buller
Dec 23, 2021


Linux Forensics - The Complete CheatSheet
While Windows forensics is widely covered via several courses and articles, there are fewer resources introducing it to the Linux Forensics

Idan Buller
Sep 27, 2021


Execution Evidence - Prefetch Files
The Evidence of execution might be your forensic solution.

Idan Buller
Sep 16, 2021


3 Reversing Challenges - HackTheBox
HackTheBox Reversing Challenges - Baby_RE, Bypass & Impossible Password.

Idan Buller
Jan 31, 2021


Shadow Copies - The wiped out Evidence
Shadow Copies is the one thing you need to add your Forensics activity list.

Idan Buller
Dec 23, 2020


RDP Forensics - Logging, Detection and Forensics
RDP is that thing you want to investigate...

Idan Buller
Nov 15, 2020


Registry Forensics - A Goldmine
Registry Hives are one of the major evidence providers for us, the analysts.

Idan Buller
Nov 7, 2020


Python Ransomware
One of the fewest Python based Ransomware...

Idan Buller
Oct 28, 2020


Shodan Tutorial
Shodan is a search engine for finding devices and their types, that exist on the world wide web.

Idan Buller
Oct 28, 2020
bottom of page