Educause Security Discussion mailing list archives

Triage Image Creation in Windows Environments


From: "Davis, Richard G." <DAVISR64 () ERAU EDU>
Date: Thu, 28 Mar 2019 18:00:47 +0000

Hi all,

For those of you who have a need to create forensic triage images in Windows environments, you’ll want to check out 
KAPE as this tool is a game changer. I created a walkthrough/intro available here  
https://www.youtube.com/watch?v=pZRrZAJif8Q (also posted on the SANS DFIR YouTube Channel).

I hope this is helpful to some of you.

Thanks,
Richard

Richard Davis, GCFE, GCFA, GNFA, GREM
Executive Director of IT Security
IT Security Services
600 S. Clyde Morris Blvd.
Daytona Beach, FL 32114
386.226.6940
davisr64 () erau edu<mailto:davisr64 () erau edu>
Embry-Riddle Aeronautical University
Florida | Arizona | Worldwide

Current thread: