Using the Geolocation Data Filter in Magnet AXIOM & AXIOM Cyber
Learn more about a new filter available in AXIOM 4.8 that allows you to filter on data that has geolocation.
Learn more about a new filter available in AXIOM 4.8 that allows you to filter on data that has geolocation.
We’re helping you capture and search embedded text with OCR, add more Facebook evidence to your cases, and more! Plus two huge announcements for AXIOM Cyber! Off-network collection and the ability to run AXIOM Cyber in an AWS EC2 instance.
Join us for a Tips & Tricks webinar hosted by Dallas Jordan where he’ll demonstrate how you can troubleshoot some potential roadblocks you may come across with Remote Acquire. We will show you how you can use AXIOM logs to help troubleshoot some issues that users have run into in the past when trying to deploy our agent for remote collections on both Windows and Macs including strategies to resolve any of these potential issues.
Join Jordan Hunt from Hunt DFIR to explore a cyber-attack incident response case study. Jordan will walk through the end to end process from identification and collection of known Indicators of Compromise (IOC) using Open Source Intelligence (OSINT) and use these in AXIOM to find the threat then locate additional IOCs that are unique to … Continued
Conducting initial investigations of employees within a corporate environment should be quick and non-invasive to have minimal impact on the employee and the organisation. Remote logical acquisitions of computers as well as access to cloud storage and logs can allow a very quick triage to determine if more in depth investigation in needed and may … Continued
Android 디바이스에서 사용 가능한 애플리케이션이 수백만 개에 이르러 단순히 어떤 도구만으로는 모든 애플리케이션을 파싱하고 지원할 수 없게 되었습니다. 따라서 디바이스에 애플리케이션이 저장되는 방식과 중요한 데이터를 찾을 수 있는 위치를 이해하는 것이 매우 중요해졌습니다. Android 애플리케이션의 기본을 이해하고 대부분의 애플리케이션 데이터가 저장되는 SQLite 데이터베이스 파일에 대해 살펴보겠습니다. 동적 앱 찾기 및 내장 SQLite 뷰어와 같은 Magnet … Continued
數位鑑識為找出發生資安事件根本原因的唯一途徑,亦是組織進行全面清查以防堵資安事件再次發生的唯一方法。以往鑑識調查人員僅能分析離線的數位媒體,但自建虛擬攻防環境可以讓攻擊透明化而讓鑑識分析更有效率。今天我們將展示自製木馬攻擊的同時,透過Magnet Cyber及Windows內建指令進行現場鑑識分析並遠端取證。
COVID-19 has undeniably changed the way that companies do business. It’s changed the way employees stay connected to their corporate infrastructure and the way that they communicate with each other; and it’s accelerated the adoption of the cloud for many companies as well. According to a set of surveys of American workers done in April and May, … Continued