MENU

Posts Tagged ‘windows 10 forensics’

Most Recent
 
Read More
2018-01-14

Data Carving with Foremost

Foremost is a console program for carving files based on its headers, footers and internal data structure. Utility Foremost wrote two special agents of the US Air Force from the special department. investigations. It is an extremely useful tool and very easy to use, but with its shortcomings. Foremost does not restore the folder structure and retains original file names and tags.

 

849
 
Read More
2018-01-12

Hindsight Overview

Obsidianforensics has created a new tool ‘Hindsight’. Hindsight is a free tool for analyzing web artifacts. In top, it can be used for Internet history forensics for Google Chrome/Chromium.

133
 
Read More
2018-01-03

ADRecon Overview

This article is devoted to the tool that extracts various artifacts from the AD environment into a specially formatted Microsoft Excel. ADRecon can be ran from any workstation that is connected to the environment.

258
 
Read More
2017-12-31

Volatility plugin to extract BitLocker Full Volume Encryption Keys

Computer attacks constantly worry administrators and computer users. Earlier we already talked about volatility.

Plugin for the platform Volatility Framework, whose goal is to extract the encryption keys Full Volume Encryption Keys (FVEK) from memory. It works from Windows 7 to Windows 10. Unfortunately, the support for Windows 8 – 10 is very experimental, but it works in most cases with a few quirks.

1811
Latest Headlines
Try a different filter
Trending Topics
Digital Forensics
Articles
Android
windows forensics
Incident Response
Cybersecurity
windows 10 forensics
News
Online Scam
Top Stories
Try a different filter
Right Now
Try a different filter
Top Five
Heat Index
 
1
Decrypting encrypted WhatsApp databases without the key
 
2
How to Make the Forensic Image of the Hard Drive
 
3
Extracting data from SmartSwitch backups
 
4
Forensic tools for your Mac
 
5
Android forensic analysis with Autopsy

Get Help Now

Thank you for contacting us.
Your Digital Investigator will call you shortly.