Комментарии:
cool
ОтветитьVery interesting material for someone starting in the IR team. Great video!
ОтветитьVery thorough explanation! Your videos have been pointed to by one of my college professors.
ОтветитьThe link in your description for sample data doesn't contain the hash file that is in the video. it only has an image .dd file. How do I proceed ?
ОтветитьHow can I do the parts using linux? I'm using a windows vm on mac
ОтветитьI thoroughly enjoyed it! Thanks for the great tutorial.
ОтветитьThank you so much for this! Do you happen to have a video or guide on how to upload an iPhone or Apple device into FTK imager to create a readable format for autopsy?
ОтветитьThank you for the best video. I have one doubt, though. During the case creation, we can add M5. However, we cannot add SHA512. there is only the option of adding SHA256.
ОтветитьAwesome tutorial, thanks a lot <3
Ответитьhow do i create a disk image, i want to practise on my own machine and recover things ive deleted from it but cant find anything on how to create a disk image that i can use for autopsy
ОтветитьThis is amazing video with great works very well
Ответитьthank you master for the basic introduction of using autospy in digital forensic. i have watch the video is very interesting. my gratitude and wish you all the best
Ответитьcannot able forensic about encript ios buck up
ОтветитьGreat explanation, thanks
Ответитьawesome tutorial for learning the Autopsy tool! Can you also share some good sources for getting forensic images for data recovery challenges?
ОтветитьThanks for the tutorial! I'm a criminal law student so Digital Forensic Investigation is really interesting. I've always wondered how gathering digital evidence works. I learned a lot from your tutorial!
Ответитьhi is it possible to use autopsy to repair corrupted video file ?
ОтветитьI have an image file on an external HD I run autopsy and it parses through and says finished but it will never load the image in.
ОтветитьeverytNice tutorialng. It was still interesting. Wish I had tNice tutorials video when I started out
ОтветитьTNice tutorials was very helpful thankyou.
Ответитьwhere to get hash values and other data shown in video, only dd file is downloadable in the given link
ОтветитьThank you for this well made tutorial!
ОтветитьIf you have a partition that is encrypted and have the key /password how do you ingest it or import it?
ОтветитьThank you so much for this, you are very thorough and provide a high level overview in this video of the various ingest modules which is very helpful. I do have one question though and perhaps this comes later in the video or another video on your channel. When is the best time to configure the settings of Autopsy outside of a case? I would assume it would be prior to starting the first case on my machine. My question really applies to configuring things like the temporary directory of autopsy, changing the central repository, etc etc.
ОтветитьHi I am new to all of this. I downloaded the practice data and I think I don't have the right format as it does not look the same as what you are showing. I have a windows 11 machine. What should I open the file with? Thanks.
ОтветитьNow we know that the evil cat abused the dog... The dog, curiously named jack, was the victim.
ОтветитьHi can this be used to view video aswell
Ответитьwow
ОтветитьFound a new DFIR channel gem <3
ОтветитьSeriously the best introductory/basic-workflow Autopsy video I've watched. I absolutely love that you give additional detail about the modules, and that you explained your workflow.
ОтветитьThanks for overview, how well does Autopsy do with video?
ОтветитьHow do you view emails? I don’t see an option for it because I keep getting a “read error”
ОтветитьLove it, thank you for the content
Ответитьcan I do with android images?
ОтветитьGreat video!
What other steps can be taken to be able to view content of a carved deleted file which was unallocated and not viewable using the application feature in Autopsy?
Is it possible to rebuild those kinda files to view the contents? Thanks.
Love the video! I'm 15 and I wanna getting to dfir any advices for learning. Should I go college etc?
ОтветитьExcellent content as always!
ОтветитьAmazing video! Nevertheless, it would have been better to use the dd/ISO files that NIST put at disposal to see all the functionalities of the software
Ответитьgood stuff
ОтветитьFTK and Autopsy are the one's I always use. Great vid.
Ответитьafter trying around 5-11 videos this is the only one that i found working
ОтветитьGreat tool for forensic .
ОтветитьThis is good. Thanks for this.
ОтветитьHow to quickly paste timestamp for documentation in linux?
ОтветитьFantastic!
ОтветитьGlad that I found your channel 👍🏽👍🏽
ОтветитьThank you
Ответить