[This is my second post on a series of articles that I would like to cover different tools and techniques to perform file system forensics of a Windows system. The first article was about acquiring a disk image in Expert Witness Format and then mount it using the SIFT workstation. The below one will be […]
🛡️ VERIFIED CYBER INTELLIGENCE ID: #37981
🕵️ Digital Forensics – NTFS Metadata Timeline Creation
⏱️ vor 3913d 6h (10.11.2015 um 18:46 Uhr) 📂 🕵️ Reverse Engineering 📡 Feed 🔗 Quelle: countuponsecurity.com