Curriculum
Course Content
4 items · 1 sections
- 01 Forensically valuable registry keys
- 02 Execution and persistence evidence
- 03 User-activity artefacts
- 04 Registry evidence to a timeline
The Windows registry as an evidence store. The keys that record execution, persistence and user activity, and reading them into the record of what an attacker did.
The Windows registry as an evidence store. The keys that record execution, persistence and user activity, and reading them into the record of what an attacker did.
4 items · 1 sections
Finish your course and receive an accredited MotiGraph certificate you can add to your CV and share with employers.