Digital Forensics

Investigation, evidence and reporting

My digital forensics write ups and documentation

Projects

DFIR network and memory forensics

The aim of this project was to answer a question I had for my own learning: how does a digital forensic analyst track and identify that a computer has been breached from both the network side and the computer systems side?

This project explores that question through an appropriate case study, written as if the scenario happened in a bank setting.