The Forensic Lunch!
The twice a month live videocast/podcast all about #DFIR !\
This broadcast:
Matt Bromiley, +Matt Bromiley talking about filters he has made for Elastic Handler and work
Talking about the 1st Annual Defcon Forensic CTF
Updates to EventMonkey to work with EVTXtract from Willi Ballenthin and bringing in descriptions
and more!
Download the Defcon Forensics CTF Here:
https://forum.defcon.org/forum/defcon...
The password to extract:
,sli38pdsf;aj8387f*HKlnelne7fy7GUHMBNWlo9udsijw_kn3ohfsa8y^%%T
Submit your answers here:
whymirosh@gmail.com
Link to event monkey:
https://github.com/devgc/EventMonkey