Content Industry: Service Providers
Android 애플리케이션 아티팩트 및 분석
Android 디바이스에서 사용 가능한 애플리케이션이 수백만 개에 이르러 단순히 어떤 도구만으로는 모든 애플리케이션을 파싱하고 지원할 수 없게 되었습니다. 따라서 디바이스에 애플리케이션이 저장되는 방식과 중요한 데이터를 찾을 수 있는 위치를 이해하는 것이 매우 중요해졌습니다. Android 애플리케이션의 기본을 이해하고 대부분의 애플리케이션 데이터가 저장되는 SQLite 데이터베이스 파일에 대해 살펴보겠습니다. 동적 앱 찾기 및 내장 SQLite 뷰어와 같은 Magnet … Continued
網路攻擊事件調查利器:Magnet AXIOM Cyber
數位鑑識為找出發生資安事件根本原因的唯一途徑,亦是組織進行全面清查以防堵資安事件再次發生的唯一方法。以往鑑識調查人員僅能分析離線的數位媒體,但自建虛擬攻防環境可以讓攻擊透明化而讓鑑識分析更有效率。今天我們將展示自製木馬攻擊的同時,透過Magnet Cyber及Windows內建指令進行現場鑑識分析並遠端取證。
Adapting Corporate Investigations Within A Pandemic
COVID-19 has undeniably changed the way that companies do business. It’s changed the way employees stay connected to their corporate infrastructure and the way that they communicate with each other; and it’s accelerated the adoption of the cloud for many companies as well. According to a set of surveys of American workers done in April and May, … Continued
Signal Backups – A Q&A Session with Magnet Artifacts
Mike Williamson talks to Software Engineer Chris McKnight about the work involved with our updated support for Signal.
Submit to the Magnet Virtual Summit 2021 Call for Papers (CFP)
We’re currently accepting submissions for presentations in this years Magnet Virtual Summit and we want to hear from you!
Ways to Share in DFIR
Jessica Hyde takes an opportunity to share different ways to share in the DFIR community.
Cache Up Ep.26 Lynita Hinsch
Performing Linux Forensic Analysis & Why You Should Care
Why do we need to learn Linux Forensics? Well, nowadays when you look at the number of tools available on different penetration testing systems running Linux, you should stop and ask yourself a basic question “are these tools and systems always going to be used for ethical purposes?” The answer is definitely, NO! Another reason … Continued
Tips & Tricks // Using Community Created Custom Artifacts in AXIOM
Did you know that there are approximately 150 community created artifacts on the Magnet Artifact Exchange? In this presentation we will discuss how to utilize these artifacts to get more evidence from your cases. These community created artifacts cover a variety of needs from supporting unsupported artifacts, to identifying specific file types, to allowing for the ingestion of results from other tools to allow for analysis within AXIOM! We will demonstrate how to obtain, load, and utilize these artifacts in bulk as well as individually. These tools allow you to look at results from iLEAPP, ALEAPP, Bulk Extractor and other tools alongside results parsed by AXIOM. We will also show where these results will exist in your case and how to use them. Join Jessica Hyde, Director of Forensics, for this informative session and get more parsed results in your cases!