DFIR Training

15K posts

DFIR Training banner
DFIR Training

DFIR Training

@DFIRTraining

The official DFIR Training account and most complete #DFIR online resource. Managed by @Brett_Shavers.

Katılım Ağustos 2016
409 Takip Edilen17.6K Takipçiler
DFIR Training retweetledi
rebus
rebus@therebus·
"Why APFS Snapshots Change Everything in Mac Forensics" And why timing matters more than you think APFS snapshots are one of the most powerful and often misunderstood sources of evidence on a Mac. Most examiners are aware that snapshots exist, but far … ift.tt/Kgwc5Rj
English
0
3
5
336
DFIR Training retweetledi
Magnet Forensics
Magnet Forensics@MagnetForensics·
When live RAM capture isn’t possible, pagefile.sys may be the only remaining source for recovering memory-related evidence In this post, Chad Gish explains why this hidden Windows system file is a critical source of forensic evidence: ow.ly/bOQJ50YXRZC #DFIR
English
0
1
3
322
DFIR Training retweetledi
Belkasoft
Belkasoft@Belkasoft·
Belkasoft Webinar: Unlocking the Power of AI with BelkaGPT and BelkaGPT Hub. Learn to simplify complex tasks, boost efficiency, and take your digital forensic investigations to the next level. 📅 Thursday, May 21, 10:00 AM GST 👉 Register: eu1.hubs.ly/H0vk_j90 #DFIR #AI
Belkasoft tweet media
English
0
1
1
135
DFIR Training retweetledi
Rob T. Lee
Rob T. Lee@robtlee·
Nearly 3,000 people are spending two months teaching AI agents to FIND EVIL in real DFIR data. Now we need judges willing to tell them how they actually did. Apply at sansurl.com/find-evil-judge Both kinds welcome: the true believers who think AI-augmented incident response is going to rewrite how we do DFIR, and the skeptics who have been waiting two years for someone to show them something that doesn't hallucinate its way to a conclusion. (Either way, you're going to see things in these submissions you didn't expect. I'll leave it at that.) The judging rubric was built for serious evaluation. Six equally weighted criteria: 1. Autonomous execution quality 2. IR accuracy 3. Analysis depth 4. Constraint implementation 5. Audit trail quality 6. Usability Every finding has to trace back to a specific tool execution. Hallucinations caught and flagged count. Confident-sounding wrong answers do not get partial credit. (This is not a hackathon where you vote for your favorite demo. Real forensic data. Real agent execution logs. Real consequences for the community toolset that winning code goes back into.) Submissions close June 15. Judging runs June 19 through July 3. $22,000 in prizes. Come see what the community built. Apply at sansurl.com/find-evil-judge Judges will have their pictures on the findevil website. We are looking for judges with real DFIR and AI experience. Skeptics. Proponents. Everyone. (Front-row seat to watch autonomous AI agents work through real incident response cases. Whether that excites you or makes you deeply curious about where it breaks, you belong in this room.)
Rob T. Lee tweet media
English
1
3
16
3K
DFIR Training retweetledi
Magnet Forensics
Magnet Forensics@MagnetForensics·
It’s a head‑to‑head battle: man vs. machine. On May 13, Brandon Epstein breaks down the results of a groundbreaking research study comparing how human examiners and AI understand and interpret complex digital forensics outputs. Register now: ow.ly/3roF50YWCa5 #DFIR
English
0
1
2
290
DFIR Training retweetledi
Arsenal Recon
Arsenal Recon@ArsenalRecon·
Traveling to the @IACIS Orlando Training Conference! Come see us Tue-Th to talk about maximum exploitation of electronic evidence that is not currently possible with other tools & published techniques. Windows swap, hibernation, & more - let's go! ArsenalRecon.com #DFIR
Arsenal Recon tweet media
English
0
1
3
372
DFIR Training retweetledi
Magnet Forensics
Magnet Forensics@MagnetForensics·
Want a closer look at the new features and enhancements in Magnet Axiom 10.0? Join us on May 6 for a webinar showcasing what’s new in Axiom 10.0, including Artifact Post Processing, enhanced intelligence workflows, and expanded artifact support: ow.ly/BCBj50YUB2j #DFIR
English
0
1
4
508