Starting a New Digital Forensic Investigation Case in Autopsy
Offered By: DFIRScience via YouTube
Course Description
Overview
Syllabus
Starting a digital investigation with Autopsy
Setting up your forensic workstation
Organize case files
Start your documentation!
Organizing suspect image data
Starting a new case in Autopsy
Autopsy: Case Information
Autopsy: Optional Information
Autopsy: Select Host
Autopsy: Select Data Source Type
Autopsy: Select Data Source
Autopsy: Configure Ingest
Modules: Recent Activity
Modules: Hash Lookup
Modules: File Type Identification
Modules: Extension Mismatch Detector
Modules: Embedded File Extractor
Modules: Picture Analyzer
Modules: Keyword Search
Modules: Email Parser
Modules: Encryption Detection
Modules: Interesting Files Identifier
Modules: Central Repository
Modules: PhotoRec Carver
Modules: Virtual Machine Extractor
Modules: Data Source Integrity
Modules: ALEAPP
Modules: Plaso
Modules: YARA Analyzer
Modules: iLEAPP
Modules: Android Analyzer
Autopsy module selection strategy
Autopsy: Add Data Source
Autopsy: Processed Data View
Autopsy: Main file view
Autopsy: File detail view
Autopsy: Filters and views
Autopsy: Deleted files filter
Autopsy: Data Artifacts, etc
Example investigation workflow
Case-specific keyword search
Tagging relevant items
Generate findings report
Analysis procedure overview
Autopsy: Images/Videos tool
Conclusions
Taught by
DFIRScience
Related Courses
Foundations of Computer Science for TeachersThe University of Texas at Austin via edX Computer Forensics
Rochester Institute of Technology via edX FinTech Security and Regulation (RegTech)
The Hong Kong University of Science and Technology via Coursera Cyber Security
CEC via Swayam Fundamentos de Ciberseguridad: un enfoque práctico
Inter-American Development Bank via edX