Digital Forensics Investigation
Digital forensics investigation utilizing Autopsy for user tracking, file recovery, and deep artifact analysis.
Project Details
Performed a comprehensive forensic investigation using the Autopsy toolset to track user activity, recover deleted files, and extract network and registry artifacts.
Extract, synthesize, and correlate reliable user activity timelines and data from incomplete digital footprints and host evidence.
Implementation & Solution
Conducted deep-dive recovery of files, meticulously analyzed registry traces, and mapped system network artifacts to reconstruct actionable evidence.
Successfully identified malicious tools including Mimikatz and Lazagne, and extracted IP/MAC address logs to produce a strong investigation workflow and evidence trail.
Assessment Toolkit
Technologies and stack used in this case study
Visual context
Project Imagery & Artifacts
A parallax scrollable media collection adding visual depth to the project's timeline and milestones.