Forensics StartMe Updates (5/1/2023)

Shortlink: startme.stark4n6.com

If people have suggestions for additions please feel free to shoot me a message on Twitter (@KevinPagano3) or Mastodon.

Blog Feed

DFIR_NZ - Ian D

DFIR YouTube Feed

CYBERWARCON

Forensic Tools

FEX Imager - GetData Forensics

SIDR - Search Index Database Reporter

Timesketch - Collaborative forensic timeline analysis

Network / Cloud Tools

Microsoft-Extractor-Suite - PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes

Other Utilities

OSFClone - PassMark

OSFMount - PassMark

PE / Malware Tools

Noriben - Portable, Simple, Malware Analysis Sandbox

SANS Posters & Other Cheat Sheets

iOS Forensics References - RealityNet

Useful Links

SANS Blue Team Wiki