[Download] Forensics and Incident Response eBooks by Dr. Stephen Cotter

The forensics artifacts from payload delivery via WMI and PowerShell

The forensics artifacts from payload delivery via WMI and PowerShell PPT is very in-depth. The forensics artifacts from WMI and PowerShell PPT is high level.

Forensics artifacts for WMI and PowerShell [Download here]

Forensics artifacts from payload delivery via WMI and PowerShell [Download here]

Intro to Container Forensics

This Power Point provides intro methods on how to conduct forensics on containers.

Download the book here: Container Forensics by Stephen Cotter

Mac Forensics 101

This Power Point provides information on Mac OS forensics artifacts and open source tools that can be used to conduct analysis.

Download the book here: Mac Forensics 101by Stephen Cotter

AmCache Forensics

Download the book here: AmCache Forensics by Stephen Cotter

Phishing Email Forensics

Download the book here: Phishing Email Forensics by Stephen Cotter

Windows Event Logs Forensics

Download the book here: Windows Event Logs Forensics by Stephen Cotter