In this episode:
We discuss the Ashley Madison Data Leak and it's implications for DFIR
David Dym, @dave873, talks about the newest version of Metadiver and it's ability to show even more metadata, including the contents of pst files and extended mapi!
Get it at: www.easymetadata.com
Matthew and I talk about our new open source project GC LNK Parser which exposes all of the shell item data we didn't know was there! (Except Joachim Metz)
We also preview our integration of our tools to Elastic Search, a preview of our OSDF Con talk and a short talk about things to come in Triforce.
Also SANS FOR578, Cyber Threat Intelligence, is now available publicly! Learn more about it here:
https://www.sans.org/course/cyber-thr...
The SANS Poster on Rekall Memory forensics is out as well and you can get it here:
https://www.sans.org/security-resourc...