Earlier this year, Mandiant launched a new freeware tool: Memoryze for the Mac™. The tool brings many of the features of Memoryze™ ...
Read moreEarlier this year, Mandiant launched a new freeware tool: Memoryze for the Mac™. The tool brings many of the features of Memoryze™ ...
Read moreUsing AuditParser to Process and Analyze Large Volumes of Data Collected with Redline
October 24 2012In this blog post, I am going to show you some ways to review data that have been collected with the Mandiant ...
Read moreUsing AuditParser to Process and Analyze Large Volumes of Data Collected with Redline
October 24 2012In this blog post, I am going to show you some ways to review data that have been collected with the Mandiant ...
Read moreUsing AuditParser to Process and Analyze Large Volumes of Data Collected with Redline
October 24 2012In this blog post, I am going to show you some ways to review data that have been collected with the Mandiant ...
Read moreUsing AuditParser to Process and Analyze Large Volumes of Data Collected with Redline
October 24 2012In this blog post, I am going to show you some ways to review data that have been collected with the Mandiant ...
Read moreIncident Response with NTFS INDX Buffers – Part 4: The Internal Structures of an INDX Attribute
October 16 2012By Jeff Hamm & William Ballenthin On August 30th, 2012, we presented a webinar on how to use INDX buffers to assist in an ...
Read moreIncident Response with NTFS INDX Buffers – Part 3: A Step by Step Guide to Parse INDX
October 10 2012By William Ballenthin & Jeff Hamm Our last post in the Incident Response with NTFS INDX Buffers series detailed the internal...
Read moreIncident Response with NTFS INDX Buffers – Part 2: The Internal Structures of a File Name Attribute
September 26 2012By Jeff Hamm & William Ballenthin Last week on M-Unition, Willi and I published the first post in...
Read moreBy William Ballenthin & Jeff Hamm On August 30, 2012, we presented a webinar on how to use INDX buffers to...
Read more
Recent Comments