DFIR Training Page
Brucon Distributed Forensics Workshop
- Learning Plan: DFIR301
- Category: dfir orchestration
- Link: http://files.brucon.org/2018/Workshop-Distributed-Forensics.pdf
Summary
Workshop slides where they introduce for great tools: Plaso (data parsing), TimeSketch (collaborative timeline analysis), GRR (remote data acquisition) and dfTimewolf (DFIR orchestration)