• Ctf
  • Engineering
  • Forensic
  • Threat hunting

Carving EVTX

Date Fri 23 June 2017 Modified Fri 23 June 2017 By Quentin JEROME Tags windows / evtx / carving / forensic

In this article we are going to explain the carving strategy to adopt in order to recover Windows Event Logs as well as our tool built up for this purpose.

more ...

  • Social

    • twitter
    • github
  • Categories

    • CTF
    • Engineering
    • Forensic
    • Threat Hunting
  • Links

    • RawSec Website
    • Contact Us

© 2017 RawSec · Powered by pelican-bootstrap3, Pelican, Bootstrap

Back to top