Network Evidence and shellbag (https://github.com/frankwxu/digital-forensics-lab/blob/main/NIST_Data_Leakage_Case/NIST_Data_Leakage_06_Network_Shellbag_Jumplist.pptx) 2M Lab 7 Network Drive and Cloud (https://github.com/frankwxu/digital-forensics-lab/blob/main/NIST_Data_Leakage_Case/NIST_Data_Leakage_07_NetworkDrive_Cloud.pptx) 5M Lab 8 Master File Table ($MFT) and Log File ($logFile) Analysis (https://github.com/frankwxu/digital-forensics-lab/blob/main/NIST_Data_Leakage_Case/NIST_Data_Leakage_08_CD_%24MFT.pptx) 13M Lab 9 Windows Search History (https://github.com/frankwxu/digital-forensics-lab/blob/main/NIST_Data_Leakage_Case/NIST_Data_Leakage_08_CD_%24MFT.pptx) 4M Lab 10 Windows Volume Shadow Copy Analysis (https://github.com/frankwxu/digital-forensics-lab/blob/main/NIST_Data_Leakage_Case/NIST_Data_Leakage_10_Vol_Shadow_Copy.pptx) 6M Lab 11 Recycle Bin and Anti-Forensics (https://github.com/frankwxu/digital-forensics-lab/blob/main/NIST_Data_Leakage_Case/NIST_Data_Leakage_11_RecycleBin_AntiForensics.pptx) 3M Lab 12 Data Carving (https://github.com/frankwxu/digital-forensics-lab/blob/main/NIST_Data_Leakage_Case/NIST_Data_Leakage_12_CD-R_Data_Carving.pptx) 3M Lab 13 Crack Windows Passwords (https://github.com/frankwxu/digital-forensics-lab/blob/main/NIST_Data_Leakage_Case/NIST_Data_Leakage_13_Crack_Win10_Login_Password.pptx) 2M
Investigating Illegal Possession of Images ===================== The case study (https://github.com/frankwxu/digital-forensics-lab/tree/main/Illegal_Possession_Images) is to investigate the illegal possession of Rhino images. This image was contributed by Dr. Golden G. Richard III, and was originally used in the DFRWS 2005 RODEO CHALLENGE. NIST hosts the USB DD image (https://www.cfreds.nist.gov/dfrws/Rhino_Hunt.html). A copy of the image is also available in the repository. Topics Covered Labs Topics Covered Size of PPTs Lab 0 HTTP Analysis using Wireshark (text) (https://github.com/frankwxu/digital-forensics-lab/blob/main/Illegal_Possession_Images/HTTP_Wireshark_Forensics_1_text.pptx) 3M Lab 1 HTTP Analysis using Wireshark (image) (https://github.com/frankwxu/digital-forensics-lab/blob/main/Illegal_Possession_Images/HTTP_Wireshark_Forensics_2_image.pptx) 6M Lab 2 Rhion Possession Investigation 1: File recovering (https://github.com/frankwxu/digital-forensics-lab/blob/main/Illegal_Possession_Images/Rhion_Possession_1_File_Recovering.pptx) 9M Lab 3 Rhion Possession Investigation 2: Steganography (https://github.com/frankwxu/digital-forensics-lab/blob/main/Illegal_Possession_Images/Rhion_Possession_2_Steganography.pptx) 4M Lab 4 Rhion Possession Investigation 3: Extract Evidence from FTP Traffic (https://github.com/frankwxu/digital-forensics-lab/blob/main/Illegal_Possession_Images/Rhion_Possession_3_FTP_Traffic_crackzip.pptx) 3M Lab 5 Rhion Possession Investigation 4: Extract Evidence from HTTP Traffic (https://github.com/frankwxu/digital-forensics-lab/blob/main/Illegal_Possession_Images/Rhion_Possession_4_HTTP_Traffic.pptx) 5M Investigating Email Harassment ========= The case study (https://github.com/frankwxu/digital-forensics-lab/tree/main/Email_Harassment) is to investigate the harassment email sent by a student to a faculty member. The case is hosted by digitalcorpora.org. You can access the senario description (https://digitalcorpora.org/corpora/scenarios/nitroba-university-harassment-scenario) and network traffic (http://downloads.digitalcorpora.org/corpora/scenarios/2008-nitroba/nitroba.pcap) from their website. The repository only provides lab instructions. Topics Covered Labs Topics Covered Size of PPTs Lab 0 Investigating Harassment Email using Wireshark (https://github.com/frankwxu/digital-forensics-lab/blob/main/Email_Harassment/0_Investigate_Harassment_Email_Wireshark.pptx) 3M Lab 1 t-shark Forensic Introduction
___________________________
@hacking_Attack
@Hacking_Video
Investigating Illegal Possession of Images ===================== The case study (https://github.com/frankwxu/digital-forensics-lab/tree/main/Illegal_Possession_Images) is to investigate the illegal possession of Rhino images. This image was contributed by Dr. Golden G. Richard III, and was originally used in the DFRWS 2005 RODEO CHALLENGE. NIST hosts the USB DD image (https://www.cfreds.nist.gov/dfrws/Rhino_Hunt.html). A copy of the image is also available in the repository. Topics Covered Labs Topics Covered Size of PPTs Lab 0 HTTP Analysis using Wireshark (text) (https://github.com/frankwxu/digital-forensics-lab/blob/main/Illegal_Possession_Images/HTTP_Wireshark_Forensics_1_text.pptx) 3M Lab 1 HTTP Analysis using Wireshark (image) (https://github.com/frankwxu/digital-forensics-lab/blob/main/Illegal_Possession_Images/HTTP_Wireshark_Forensics_2_image.pptx) 6M Lab 2 Rhion Possession Investigation 1: File recovering (https://github.com/frankwxu/digital-forensics-lab/blob/main/Illegal_Possession_Images/Rhion_Possession_1_File_Recovering.pptx) 9M Lab 3 Rhion Possession Investigation 2: Steganography (https://github.com/frankwxu/digital-forensics-lab/blob/main/Illegal_Possession_Images/Rhion_Possession_2_Steganography.pptx) 4M Lab 4 Rhion Possession Investigation 3: Extract Evidence from FTP Traffic (https://github.com/frankwxu/digital-forensics-lab/blob/main/Illegal_Possession_Images/Rhion_Possession_3_FTP_Traffic_crackzip.pptx) 3M Lab 5 Rhion Possession Investigation 4: Extract Evidence from HTTP Traffic (https://github.com/frankwxu/digital-forensics-lab/blob/main/Illegal_Possession_Images/Rhion_Possession_4_HTTP_Traffic.pptx) 5M Investigating Email Harassment ========= The case study (https://github.com/frankwxu/digital-forensics-lab/tree/main/Email_Harassment) is to investigate the harassment email sent by a student to a faculty member. The case is hosted by digitalcorpora.org. You can access the senario description (https://digitalcorpora.org/corpora/scenarios/nitroba-university-harassment-scenario) and network traffic (http://downloads.digitalcorpora.org/corpora/scenarios/2008-nitroba/nitroba.pcap) from their website. The repository only provides lab instructions. Topics Covered Labs Topics Covered Size of PPTs Lab 0 Investigating Harassment Email using Wireshark (https://github.com/frankwxu/digital-forensics-lab/blob/main/Email_Harassment/0_Investigate_Harassment_Email_Wireshark.pptx) 3M Lab 1 t-shark Forensic Introduction
___________________________
@hacking_Attack
@Hacking_Video
GitHub
digital-forensics-lab/NIST_Data_Leakage_06_Network_Shellbag_Jumplist.pptx at main · frankwxu/digital-forensics-lab
Free hands-on digital forensics labs for students and faculty - digital-forensics-lab/NIST_Data_Leakage_06_Network_Shellbag_Jumplist.pptx at main · frankwxu/digital-forensics-lab
(https://github.com/frankwxu/digital-forensics-lab/blob/main/Email_Harassment/1_tshark_forensics_Introduction.pptx) 2M Lab 2 Investigating Harassment Email using t-shark (https://github.com/frankwxu/digital-forensics-lab/blob/main/2_Investigate_Harassment_Email_TShark.pptx) 2M Investigating Illegal File Transferring (Memory Forensics ) ========= The case study (https://github.com/frankwxu/digital-forensics-lab/tree/main/Illegal_File_Transferring_Memory_Forensics) is to investigate computer memory for reconstructing a timeline of illegal data transferring. The case includes a scenario of transfer sensitive files from a server to a USB. Topics Covered Labs Topics Covered Size of PPTs Lab 0 Memory Forensics (https://github.com/frankwxu/digital-forensics-lab/blob/main/Illegal_File_Transferring_Memory_Forensics) 11M part 1 Understand the Suspect and Accounts part 2 Understand the Suspect’s PC part 3 Network Forensics part 4 Investigate Command History part 5 Investigate Suspect’s USB part 6 Investigate Internet Explorer (https://www.kitploit.com/search/label/Internet%20Explorer) History part 7 Investigate File Explorer History part 8 Timeline Analysis Investigating Hacking Case ========= The case study (https://github.com/frankwxu/digital-forensics-lab/tree/main/NIST_Hacking_Case), including a disk image provided by NIST (https://www.cfreds.nist.gov/Hacking_Case.html) is to investigate a hacker who intercepts internet traffic within range of Wireless Access Points. Topics Covered Labs Topics Covered Size of PPTs Lab 0 Hacking Case (https://github.com/frankwxu/digital-forensics-lab/blob/main/NIST_Hacking_Case/NIST_Hacking_Case.pptx) 8M Investigating Android 10 The image is created by Joshua Hickman and hosted by digitalcorpora (https://digitalcorpora.org/corpora/cell-phones/android-10). ========= Labs Topics Covered Size of PPTs Lab 0 Intro Pixel 3 (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/0_Intro_Pixel3_Andriod10.pptx) 3M Lab 1 Pixel 3 Image (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/1_Pixel3_Image.pptx) 2M Lab 2 Pixel 3 Device (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/2_Pixel3_Device_Investigation.pptx) 4M Lab 3 Pixel 3 System Setting (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/3_Pixel3_System_settings.pptx) 5M Lab 4 Overview: App Life Cycle (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/4_Overivew_App_Life_Cycle.pptx) 11M Lab 5.1.1 AOSP App Investigations: Messaging (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/5_1_1_AOSP_App_Investigations_Messaging.pptx) 4M Lab 5.1.2 AOSP App Investigations: Contacts (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/5_1_2_AOSP_App_Investigations_Contacts.pptx) 3M Lab 5.1.3 AOSP App Investigations: Calendar (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/5_2_1_GMS_App_Investigations_Messaging.pptx) 1M Lab 5.2.1 GMS App Investigations: Messaging (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/5_2_2_GMS_App_Investigations_Dialer.pptx) 6M Lab 5.2.2 GMS App Investigations: Dialer (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/5_2_2_GMS_App_Investigations_Dialer.pptx) 2M Lab 5.2.3 GMS App Investigations: Maps (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/5_2_3_GMS_App_Investigations_Maps.pptx) 8M Lab 5.2.4 GMS App Investigations: Photos (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/5_2_4_GMS_App_Investigations_Photos.pptx) 6M Lab 5.3.1 Third-Party App Investigations: Kik (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/5_3_1_Third_Party_App_Investigation_kik.pptx)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
GitHub
digital-forensics-lab/1_tshark_forensics_Introduction.pptx at main · frankwxu/digital-forensics-lab
Free hands-on digital forensics labs for students and faculty - digital-forensics-lab/1_tshark_forensics_Introduction.pptx at main · frankwxu/digital-forensics-lab
4M Lab 5.3.2 Third-Party App Investigations: textnow (https://github.com/frankwxu/digital-forensics-lab/blob/main/5_3_2_Third_Party_App_Investigation%20_textnow.pptx) 1M Lab 5.3.3 Third-Party App Investigations: whatapp (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/5_3_3_Third_Party_App_Investigation_whatsapp.pptx) 3M Lab 6 Pixel 3 Rooting (https://github.com/frankwxu/digital-forensics-lab/blob/main/Andriod10/6_Pixel3_rooting.pptx) 5M Tools Used ======== Name version vendor Wine 6.0 https://source.winehq.org/git/wine.git/ Vinetto 0.98 https://github.com/AtesComp/Vinetto imgclip 05.12.2017 https://github.com/Arthelon/imgclip Tree 06.01.2020 https://github.com/kddeisz/tree RegRipper 3.0 https://github.com/keydet89/RegRipper3.0 Windows-Prefetch-Parser 05.01.2016 https://github.com/PoorBillionaire/Windows-Prefetch-Parser.git python-evtx 05.21.2020 https://github.com/williballenthin/python-evtx xmlstarlet 1.6.1 https://github.com/fishjam/xmlstarlet hivex 09.15.2020 https://github.com/libguestfs/hivex libesedb 01.01.2021 https://github.com/libyal/libesedb pasco-project 02.09.2017 https://annsli.github.io/pasco-project/ libpff 01.17.2021 https://github.com/libyal/libpff USN-Record-Carver 05.21.2017 https://github.com/PoorBillionaire/USN-Record-Carver USN-Journal-Parser 1212.2018 https://github.com/PoorBillionaire/USN-Journal-Parser JLECmd 1.4.0.0 https://f001.backblazeb2.com/file/EricZimmermanTools/JLECmd.zip libnl-utils 3.2.27 https://packages.ubuntu.com/xenial/libs/libnl-utils time_decode 12.13.2020 https://github.com/digitalsleuth/time_decode analyzeMFT 2.0.4 https://github.com/dkovar/analyzeMFT libvshadow 12.20.2020 https://github.com/libyal/libvshadow recentfilecache-parser 02.13.2018 https://github.com/prolsen/recentfilecache-parser Contribution ============= Frank Xu Malcolm Hayward Richard (Max) Wheeless
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
Digital-Forensics-Lab - Free Hands-On Digital Forensics Labs For Students And Faculty
https://blogger.googleusercontent.com/img/a/AVvXsEiGH5Xx6KQ8Jd109qlTWqnttbS0LwzBhCMAWLUj8A_4lwSHrfdQM-GXsCtbnn5Ecut728xiAo0GM7Sz3DJTEkZOEkcgaOxXYdrAXPJRuNPz3dHGT8UPCg8znBqqLtNTsi1wVep8Y3LjWN21gAZJSWAebUKgjZ44AEhGIQrRAHJL5wnfcgiv2w7nDhwP5A=w200-h81 https://blogger.googleusercontent.com/img/a/AVvXsEhdi8i2IeXR7oL4cTPSV4N6B9AzcPuQ8PmPd8WXFYvrqRuT2ohxohzGS0QxO3CYtPxZDPxaue2JpblMMXaE9EwDNUEtlDQhG8OF3ZwOiiO_lA_BdMNMA56EcHgdRDLBtqKJE4esi1ODlpQBsgvCg_subZIO-MA6dOQWx13uIRN0-LuLNf4ZiWpO_D9Fxg=w200-h84 Features of Repository===================
* Hands-on Digital Forensics Labs: designed for Students and Faculty
* Linux-based lab: All labs are purely based on Kali Linux
* Lab screenshots: Each lab has PPTs with instruction screenshots
* Comprehensive: Cover many topics in digital forensics
* Free: All tools are open source
* Updated: The project is funded by DOJ and will keep updating
* Two formalized forensic intelligence in JSON files based-on case studies Table of Contents (updating)* Basic Computer Skills for Digital Forensics
* Number Systems
* PC Introduction
* Windows Command Line Tutorial
* Linux Command Line Tutorial
* Advanced Linux Command Line Tutorial
* Computer and Digital Forensics (updated on Oct. 2021)
* Introduction to Digital Forensics
* Sleuth Kit Tutorial
* USB Image Acquisition
* Evidence Search Techniques
* Data Carving
* Steganography
* Forensic Report Template
* Computer Forensics Case Study
* Investigating P2P Data Leakage (added on June 2021)
* Investigating NIST Data Leakage
* Investigating Illegal Possession of Images
* Investigating Email Harassment
* Investigating Illegal File Transferring (Memory Forensics)
* Investigating Hacking Case
* Mobile Forensics Case Study
* Investigating Android 10 (added on Oct/24/2021)
* iOS 13 (to be released...)
* Forensic Intelligence Repository
* Email forensics
* Illegal Possession of Images
* Tool Installation
* Tools Used
* Installation PPTs
* Installation Scripts (see commands as follows)
The P2P data leakage case study is to help students to apply various forensic techniques to investigate intellectual property theft involving P2P. The study include
* A large and complex case involving a uTorrent client. The case is similar to NIST data leakage lab. However, it provides a clearer and more detailed timeline.
* Solid evidence with explanations. Each evidence that is associated with each activity is explained along with the timeline. We suggest using this before study NIST data leakage case study.
* 10 hands-on labs/topics in digital forensics
Topics Covered
Labs Topics Covered Size of PPTs Lab 0 Lab Environment Setting Up 4M Lab 1 Disk Image and Partitions 5M Lab 2 Windows Registry and File Directory 15M Lab 3 MFT Timeline 6M Lab 4 USN Journal Timeline 3M Lab 5 uTorrent Log File 9M Lab 6 File Signature 8M Lab 7 Emails 9M Lab 8 Web History 11M Lab 9 Website Analysis 2M Lab 10 Timeline (Summary) 13K Investigating NIST Data Leakage==============
The case study is to investigate an image involving intellectual property theft. The study include
* A large and complex case study created by NIST. You can access the Senario, DD/Encase images. You can also find the solutions on their website.
* 14 hands-on labs/topics in digital forensics
Topics Covered
Labs Topics Covered Size of PPTs Lab 0 Environment S[...]
___________________________
@hacking_Attack
@Hacking_Video
Digital-Forensics-Lab - Free Hands-On Digital Forensics Labs For Students And Faculty
https://blogger.googleusercontent.com/img/a/AVvXsEiGH5Xx6KQ8Jd109qlTWqnttbS0LwzBhCMAWLUj8A_4lwSHrfdQM-GXsCtbnn5Ecut728xiAo0GM7Sz3DJTEkZOEkcgaOxXYdrAXPJRuNPz3dHGT8UPCg8znBqqLtNTsi1wVep8Y3LjWN21gAZJSWAebUKgjZ44AEhGIQrRAHJL5wnfcgiv2w7nDhwP5A=w200-h81 https://blogger.googleusercontent.com/img/a/AVvXsEhdi8i2IeXR7oL4cTPSV4N6B9AzcPuQ8PmPd8WXFYvrqRuT2ohxohzGS0QxO3CYtPxZDPxaue2JpblMMXaE9EwDNUEtlDQhG8OF3ZwOiiO_lA_BdMNMA56EcHgdRDLBtqKJE4esi1ODlpQBsgvCg_subZIO-MA6dOQWx13uIRN0-LuLNf4ZiWpO_D9Fxg=w200-h84 Features of Repository===================
* Hands-on Digital Forensics Labs: designed for Students and Faculty
* Linux-based lab: All labs are purely based on Kali Linux
* Lab screenshots: Each lab has PPTs with instruction screenshots
* Comprehensive: Cover many topics in digital forensics
* Free: All tools are open source
* Updated: The project is funded by DOJ and will keep updating
* Two formalized forensic intelligence in JSON files based-on case studies Table of Contents (updating)* Basic Computer Skills for Digital Forensics
* Number Systems
* PC Introduction
* Windows Command Line Tutorial
* Linux Command Line Tutorial
* Advanced Linux Command Line Tutorial
* Computer and Digital Forensics (updated on Oct. 2021)
* Introduction to Digital Forensics
* Sleuth Kit Tutorial
* USB Image Acquisition
* Evidence Search Techniques
* Data Carving
* Steganography
* Forensic Report Template
* Computer Forensics Case Study
* Investigating P2P Data Leakage (added on June 2021)
* Investigating NIST Data Leakage
* Investigating Illegal Possession of Images
* Investigating Email Harassment
* Investigating Illegal File Transferring (Memory Forensics)
* Investigating Hacking Case
* Mobile Forensics Case Study
* Investigating Android 10 (added on Oct/24/2021)
* iOS 13 (to be released...)
* Forensic Intelligence Repository
* Email forensics
* Illegal Possession of Images
* Tool Installation
* Tools Used
* Installation PPTs
* Installation Scripts (see commands as follows)
# The following commands will install all tools needed for Data Leakage Case. We will upgrade the script to add more tools for other labs soon.
wget https://raw.githubusercontent.com/frankwxu/digital-forensics-lab/main/Help/tool-install-zsh.sh
chmod +x tool-install-zsh.sh
./tool-install-zsh.shInvestigating P2P Data Leakage==============The P2P data leakage case study is to help students to apply various forensic techniques to investigate intellectual property theft involving P2P. The study include
* A large and complex case involving a uTorrent client. The case is similar to NIST data leakage lab. However, it provides a clearer and more detailed timeline.
* Solid evidence with explanations. Each evidence that is associated with each activity is explained along with the timeline. We suggest using this before study NIST data leakage case study.
* 10 hands-on labs/topics in digital forensics
Topics Covered
Labs Topics Covered Size of PPTs Lab 0 Lab Environment Setting Up 4M Lab 1 Disk Image and Partitions 5M Lab 2 Windows Registry and File Directory 15M Lab 3 MFT Timeline 6M Lab 4 USN Journal Timeline 3M Lab 5 uTorrent Log File 9M Lab 6 File Signature 8M Lab 7 Emails 9M Lab 8 Web History 11M Lab 9 Website Analysis 2M Lab 10 Timeline (Summary) 13K Investigating NIST Data Leakage==============
The case study is to investigate an image involving intellectual property theft. The study include
* A large and complex case study created by NIST. You can access the Senario, DD/Encase images. You can also find the solutions on their website.
* 14 hands-on labs/topics in digital forensics
Topics Covered
Labs Topics Covered Size of PPTs Lab 0 Environment S[...]
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Kitploit – Maintenance in Progress
Kitploit is temporarily under maintenance. We’ll be back shortly with improvements.
Hacking Articles Tips Tricks Videos Tutorials
KitPloit - PenTest Tools! Digital-Forensics-Lab - Free Hands-On Digital Forensics Labs For Students And Faculty https://blogger.googleusercontent.com/img/a/AVvXsEiGH5Xx6KQ8Jd109qlTWqnttbS0LwzBhCMAWLUj8A_4lwSHrfdQM-GXsCtbnn5Ecut728xiAo0GM7Sz3DJTEkZOEkcgaO…
etting Up 2M Lab 1 Windows Registry 3M Lab 2 Windows Event and XML 3M Lab 3 Web History and SQL 3M Lab 4 Email Investigation 3M Lab 5 File Change History and USN Journal 2M Lab 6 Network Evidence and shellbag 2M Lab 7 Network Drive and Cloud 5M Lab 8 Master File Table ($MFT) and Log File ($logFile) Analysis 13M Lab 9 Windows Search History 4M Lab 10 Windows Volume Shadow Copy Analysis 6M Lab 11 Recycle Bin and Anti-Forensics 3M Lab 12 Data Carving 3M Lab 13 Crack Windows Passwords 2M Investigating Illegal Possession of Images=====================
The case study is to investigate the illegal possession of Rhino images. This image was contributed by Dr. Golden G. Richard III, and was originally used in the DFRWS 2005 RODEO CHALLENGE. NIST hosts the USB DD image. A copy of the image is also available in the repository.
Topics Covered
Labs Topics Covered Size of PPTs Lab 0 HTTP Analysis using Wireshark (text) 3M Lab 1 HTTP Analysis using Wireshark (image) 6M Lab 2 Rhion Possession Investigation 1: File recovering 9M Lab 3 Rhion Possession Investigation 2: Steganography 4M Lab 4 Rhion Possession Investigation 3: Extract Evidence from FTP Traffic 3M Lab 5 Rhion Possession Investigation 4: Extract Evidence from HTTP Traffic 5M Investigating Email Harassment=========
The case study is to investigate the harassment email sent by a student to a faculty member. The case is hosted by digitalcorpora.org. You can access the senario description and network traffic from their website. The repository only provides lab instructions.
Topics Covered
Labs Topics Covered Size of PPTs Lab 0 Investigating Harassment Email using Wireshark 3M Lab 1 t-shark Forensic Introduction 2M Lab 2 Investigating Harassment Email using t-shark 2M Investigating Illegal File Transferring (Memory Forensics )=========
The case study is to investigate computer memory for reconstructing a timeline of illegal data transferring. The case includes a scenario of transfer sensitive files from a server to a USB.
Topics Covered
Labs Topics Covered Size of PPTs Lab 0 Memory Forensics 11M part 1 Understand the Suspect and Accounts part 2 Understand the Suspect’s PC part 3 Network Forensics part 4 Investigate Command History part 5 Investigate Suspect’s USB part 6 Investigate Internet Explorer History part 7 Investigate File Explorer History part 8 Timeline Analysis Investigating Hacking Case=========
The case study, including a disk image provided by NIST is to investigate a hacker who intercepts internet traffic within range of Wireless Access Points.
Topics Covered
Labs Topics Covered Size of PPTs Lab 0 Hacking Case 8M Investigating Android 10The image is created by Joshua Hickman and hosted by digitalcorpora.
=========
Labs Topics Covered Size of PPTs Lab 0 Intro Pixel 3 3M Lab 1 Pixel 3 Image 2M Lab 2 Pixel 3 Device 4M Lab 3 Pixel 3 System Setting 5M Lab 4 Overview: App Life Cycle 11M Lab 5.1.1 AOSP App Investigations: Messaging 4M Lab 5.1.2 AOSP App Investigations: Contacts 3M Lab 5.1.3 AOSP App Investigations: Calendar 1M Lab 5.2.1 GMS App Investigations: Messaging 6M Lab 5.2.2 GMS App Investigations: Dialer 2M Lab 5.2.3 GMS App Investigations: Maps 8M Lab 5.2.4 GMS App Investigations: Photos 6M Lab 5.3.1 Third-Party App Investigations: Kik 4M Lab 5.3.2 Third-Party App Investigations: textnow 1M Lab 5.3.3 Third-Party App Investigations: whatapp 3M Lab 6 Pixel 3 Rooting 5M Tools Used========
Name version vendor Wine 6.0 https://source.winehq.org/git/wine.git/ Vinetto 0.98 https://github.com/AtesComp/Vinetto imgclip 05.12.2017 https://github.com/Arthelon/imgclip Tree 06.01.2020 https://github.com/kddeisz/tree RegRipper 3.0 https://github.com/keydet89/RegRipper3.0 Windows-Prefetch-Parser 05.01.2016 https://github.com/PoorBillionaire/Windows-Prefetch-Parser.git python-evtx 05.21.2020 https://github.com/williballenthin/python-evtx xmlstarlet 1.6.1 https://github.com/fishjam/xmlstarlet hivex 09.[...]
___________________________
@hacking_Attack
@Hacking_Video
The case study is to investigate the illegal possession of Rhino images. This image was contributed by Dr. Golden G. Richard III, and was originally used in the DFRWS 2005 RODEO CHALLENGE. NIST hosts the USB DD image. A copy of the image is also available in the repository.
Topics Covered
Labs Topics Covered Size of PPTs Lab 0 HTTP Analysis using Wireshark (text) 3M Lab 1 HTTP Analysis using Wireshark (image) 6M Lab 2 Rhion Possession Investigation 1: File recovering 9M Lab 3 Rhion Possession Investigation 2: Steganography 4M Lab 4 Rhion Possession Investigation 3: Extract Evidence from FTP Traffic 3M Lab 5 Rhion Possession Investigation 4: Extract Evidence from HTTP Traffic 5M Investigating Email Harassment=========
The case study is to investigate the harassment email sent by a student to a faculty member. The case is hosted by digitalcorpora.org. You can access the senario description and network traffic from their website. The repository only provides lab instructions.
Topics Covered
Labs Topics Covered Size of PPTs Lab 0 Investigating Harassment Email using Wireshark 3M Lab 1 t-shark Forensic Introduction 2M Lab 2 Investigating Harassment Email using t-shark 2M Investigating Illegal File Transferring (Memory Forensics )=========
The case study is to investigate computer memory for reconstructing a timeline of illegal data transferring. The case includes a scenario of transfer sensitive files from a server to a USB.
Topics Covered
Labs Topics Covered Size of PPTs Lab 0 Memory Forensics 11M part 1 Understand the Suspect and Accounts part 2 Understand the Suspect’s PC part 3 Network Forensics part 4 Investigate Command History part 5 Investigate Suspect’s USB part 6 Investigate Internet Explorer History part 7 Investigate File Explorer History part 8 Timeline Analysis Investigating Hacking Case=========
The case study, including a disk image provided by NIST is to investigate a hacker who intercepts internet traffic within range of Wireless Access Points.
Topics Covered
Labs Topics Covered Size of PPTs Lab 0 Hacking Case 8M Investigating Android 10The image is created by Joshua Hickman and hosted by digitalcorpora.
=========
Labs Topics Covered Size of PPTs Lab 0 Intro Pixel 3 3M Lab 1 Pixel 3 Image 2M Lab 2 Pixel 3 Device 4M Lab 3 Pixel 3 System Setting 5M Lab 4 Overview: App Life Cycle 11M Lab 5.1.1 AOSP App Investigations: Messaging 4M Lab 5.1.2 AOSP App Investigations: Contacts 3M Lab 5.1.3 AOSP App Investigations: Calendar 1M Lab 5.2.1 GMS App Investigations: Messaging 6M Lab 5.2.2 GMS App Investigations: Dialer 2M Lab 5.2.3 GMS App Investigations: Maps 8M Lab 5.2.4 GMS App Investigations: Photos 6M Lab 5.3.1 Third-Party App Investigations: Kik 4M Lab 5.3.2 Third-Party App Investigations: textnow 1M Lab 5.3.3 Third-Party App Investigations: whatapp 3M Lab 6 Pixel 3 Rooting 5M Tools Used========
Name version vendor Wine 6.0 https://source.winehq.org/git/wine.git/ Vinetto 0.98 https://github.com/AtesComp/Vinetto imgclip 05.12.2017 https://github.com/Arthelon/imgclip Tree 06.01.2020 https://github.com/kddeisz/tree RegRipper 3.0 https://github.com/keydet89/RegRipper3.0 Windows-Prefetch-Parser 05.01.2016 https://github.com/PoorBillionaire/Windows-Prefetch-Parser.git python-evtx 05.21.2020 https://github.com/williballenthin/python-evtx xmlstarlet 1.6.1 https://github.com/fishjam/xmlstarlet hivex 09.[...]
___________________________
@hacking_Attack
@Hacking_Video
GitHub
GitHub - AtesComp/Vinetto: Vinetto: a thumbnail file parser. Based on the original Vinetto by Michel Roukine
Vinetto: a thumbnail file parser. Based on the original Vinetto by Michel Roukine - AtesComp/Vinetto
Hacking Articles Tips Tricks Videos Tutorials
etting Up 2M Lab 1 Windows Registry 3M Lab 2 Windows Event and XML 3M Lab 3 Web History and SQL 3M Lab 4 Email Investigation 3M Lab 5 File Change History and USN Journal 2M Lab 6 Network Evidence and shellbag 2M Lab 7 Network Drive and Cloud 5M Lab 8 Master…
15.2020 https://github.com/libguestfs/hivex libesedb 01.01.2021 https://github.com/libyal/libesedb pasco-project 02.09.2017 https://annsli.github.io/pasco-project/ libpff 01.17.2021 https://github.com/libyal/libpff USN-Record-Carver 05.21.2017 https://github.com/PoorBillionaire/USN-Record-Carver USN-Journal-Parser 1212.2018 https://github.com/PoorBillionaire/USN-Journal-Parser JLECmd 1.4.0.0 https://f001.backblazeb2.com/file/EricZimmermanTools/JLECmd.zip libnl-utils 3.2.27 https://packages.ubuntu.com/xenial/libs/libnl-utils time_decode 12.13.2020 https://github.com/digitalsleuth/time_decode analyzeMFT 2.0.4 https://github.com/dkovar/analyzeMFT libvshadow 12.20.2020 https://github.com/libyal/libvshadow recentfilecache-parser 02.13.2018 https://github.com/prolsen/recentfilecache-parser Contribution=============
* Frank Xu
* Malcolm Hayward
* Richard (Max) Wheeless Download Digital-Forensics-Lab
___________________________
@hacking_Attack
@Hacking_Video
* Frank Xu
* Malcolm Hayward
* Richard (Max) Wheeless Download Digital-Forensics-Lab
___________________________
@hacking_Attack
@Hacking_Video
GitHub
GitHub - libguestfs/hivex: windows registry hive extraction library. PLEASE DO NOT USE GITHUB FOR ISSUES OR PULL REQUESTS. See…
windows registry hive extraction library. PLEASE DO NOT USE GITHUB FOR ISSUES OR PULL REQUESTS. See the website for how to file a bug or contact us. http://libguestfs.org - libguestfs/hivex
Hacking Articles Tips Tricks Videos Tutorials
Photo
Dark Reading: Attacks/Breaches
Panasonic Hit in Data Breach
Tech firm reveals that data on one of its file servers was accessed by attackers.
___________________________
@hacking_Attack
@Hacking_Video
Panasonic Hit in Data Breach
Tech firm reveals that data on one of its file servers was accessed by attackers.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
Panasonic Hit in Data Breach
Tech firm reveals that data on one of its file servers was accessed by attackers.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Dark Reading: Attacks/Breaches
IKEA Email Systems Targeted in Cyberattack
Attackers are reportedly targeting IKEA employees in a phishing campaign that leverages stolen reply-chain emails.
___________________________
@hacking_Attack
@Hacking_Video
IKEA Email Systems Targeted in Cyberattack
Attackers are reportedly targeting IKEA employees in a phishing campaign that leverages stolen reply-chain emails.
___________________________
@hacking_Attack
@Hacking_Video
Dark Reading
IKEA Email Systems Targeted in Cyberattack
Attackers are reportedly targeting IKEA employees in a phishing campaign that leverages stolen reply-chain emails.
Assignment: XSS Filters — Build your own
https://thexssrat.medium.com/assignment-xss-filters-build-your-own-5bb4cad6d46d?source=rss------bug_bounty-5
IntroductionContinue reading on Medium » (https://thexssrat.medium.com/assignment-xss-filters-build-your-own-5bb4cad6d46d?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
https://thexssrat.medium.com/assignment-xss-filters-build-your-own-5bb4cad6d46d?source=rss------bug_bounty-5
IntroductionContinue reading on Medium » (https://thexssrat.medium.com/assignment-xss-filters-build-your-own-5bb4cad6d46d?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
Medium
Assignment: XSS Filters — Build your own
Introduction
Hacking Articles Tips Tricks Videos Tutorials
Photo
Deep Web
Help Tor report a crypto scam impersonating it
https://external-preview.redd.it/fKnGDnsBEhwpmMtXlsYb_2kOneV92SNplQ7P6gbmZ4o.jpg?width=108&crop=smart&auto=webp&s=b84b416943293facc309dffdab0dee6b3afaa420 submitted by /u/Deku-shrub
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Help Tor report a crypto scam impersonating it
https://external-preview.redd.it/fKnGDnsBEhwpmMtXlsYb_2kOneV92SNplQ7P6gbmZ4o.jpg?width=108&crop=smart&auto=webp&s=b84b416943293facc309dffdab0dee6b3afaa420 submitted by /u/Deku-shrub
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Help Tor report a crypto scam impersonating it
Posted in r/deepweb by u/Deku-shrub • 9 points and 2 comments
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Assignment: XSS Filters — Build your own
Introduction
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Assignment: XSS Filters — Build your own
Introduction
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Assignment: XSS Filters — Build your own
Introduction