Jan's Blog on DFIR, TI, REM,....

Archive

23 Oct 2021

Gradual Evidence Acquisition From an Erroneous Drive

20 Aug 2021

Defeating BlackMatter's string obfuscation

04 Aug 2021

Understanding BlackMatter's API Hashing

03 Aug 2021

Logical imaging with AFF4-L

20 Jun 2021

Analyzing VM images

27 May 2021

Dump Linux process memory

26 May 2021

Hello World