Digital Forensic Survival Podcast

DFSP # 278 - Process Triage & CMD


Listen Later

This week is a continuation of the Windows fast triage miniseries. While other aspects of the triage miniseries had fairly contained artifacts to examine, new process triage presents a large and complex landscape to the analyst. I have already broken down a number of effective analysis methods to make this more manageable. This week I focus on key applications to look for during a review. These applications tend to be associated more with malicious activity, at least according to threat intelligence research, so being aware of them and recognizing the potential is important. I also spend some time talking about the nuances of CMD.

...more
View all episodesView all episodes
Download on the App Store

Digital Forensic Survival PodcastBy Digital Forensic Survival Podcast

  • 4.8
  • 4.8
  • 4.8
  • 4.8
  • 4.8

4.8

60 ratings


More shows like Digital Forensic Survival Podcast

View all
Adversary Universe Podcast by CrowdStrike

Adversary Universe Podcast

78 Listeners