Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
SDF: Weblog Forensics
Rating: 4.4 out of 5(176 ratings)
1,061 students

SDF: Weblog Forensics

Learn weblog forensics
Created byMichael Leclair
Last updated 2/2024
English
English [Auto],

What you'll learn

  • Understand weblog fundamentals from a DFIR point-of-view
  • Understand weblog components for their investigative value
  • Be able to create custom IOC sweeps
  • Be able to create frequency analysis sweeps
  • Be able to create attack pattern sweeps
  • Be able to automate the sweeps into a single, simple script

Course content

8 sections42 lectures2h 44m total length
  • Welcome to the SDF series0:29

    Welcome to the Surviving Digital Forensic Training Series: Weblog Forensics!

    The goal of this class is to teach you a valuable computer forensics skill all in about one hour. The Weblogs are common evidence in DFIR investigations and knowing how to work with this artifact is a critical skill for all analysts. 

  • Class Outline4:04

    This lecture goes over the goals of the class and what students will learn upon completion.

  • Class Tools & Downloads1:00

    This lecture provides an overview of the tools you will be using in this class. The SDF series focuses on using low-cost\ no-cost computer forensic tools built by the DFIR community.

  • SIFT Workstation0:50

    The SIFT workstation, freely available, will be used as a platform to run the Linux tools.

    Set up instructions may be found here: https://digital-forensics.sans.org/community/downloads

    SDF class for SIFT set up: https://www.udemy.com/surviving-digital-forensics-paladin-virtual-machine/?couponCode=PODCAST

  • SIFT Details0:09

Requirements

  • Windows, Mac or Linux system
  • SIFT Workstation (Virtual Machine) - recommended
  • All in-class forensic programs are freely available
  • Student testing and validation material provided

Description

Welcome to the Surviving Digital Forensics series. This class provides hands-on training that teaches weblog forensic triage techniques.

  • Learn weblog fundamentals from a DFIR point-of-view

  • Understand weblog components for their investigative value

  • Learn how to create custom IOC sweeps

  • Learn how to create frequency analysis sweeps using IP addresses, status codes, request methods, etc.

  • Learn how to create attack pattern sweeps for SQL injection, web shells, XSS and more

  • Learn how to automate the sweeps into a single, simple script

Who this course is for:

  • Computer Forensic Analysts
  • Incident Response Analyst
  • IT Security analysts
  • IT professionals
  • Students