DFSP # 331 - New Services

Digital Forensic Survival Podcast - En podcast af Digital Forensic Survival Podcast - Tirsdage

Kategorier:

In the past I’ve talked about fast triage from a high-level, addressing the different artifacts and some interesting elements in each of those artifacts. I decided to start going a bit deeper and focus on one or a few artifacts at a time and really talk about the important details they may record for your investigation and how to interpret that information quickly. I’m going to start with the New Service Installation details recorded in Windows event logs. These have a number of advantages for your triage methodology and I will have all the details coming up.

Visit the podcast's native language site