Open-Source DFIR Tools Deep Dive by Edward Henriquez episode artwork

EPISODE · Mar 7, 2025 · 31 MIN

Open-Source DFIR Tools Deep Dive by Edward Henriquez

from Decoded: The Cybersecurity Podcast · host Edward Henriquez

Decoded: The Open-Source Arsenal – Deep Dive into DFIR Tools is a podcast episode hosted by Edward Henriquez that explores a variety of open-source tools critical for digital forensics and incident response (DFIR). The episode examines tools used in disk and memory forensics, such as Autopsy, The Sleuth Kit, Volatility, and Rekall, for analyzing compromised systems and memory dumps. It further discusses network forensics with Wireshark, Zeek, and Suricata for traffic analysis and threat detection. Additionally, the episode covers log and event analysis using the ELK Stack and Graylog, as well as malware analysis with YARA, Ghidra, and Radare2. Finally, it touches upon incident response and threat hunting tools like Velociraptor, GRR Rapid Response, and Osquery, and concludes with cloud forensics tools for AWS and GCP, highlighting their importance in uncovering cyber threats.

Episode metadata supplied by the publisher feed · Published Mar 7, 2025

Embed this episode

NOW PLAYING

Open-Source DFIR Tools Deep Dive by Edward Henriquez

0:00 31:57

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Decoded: The Cybersecurity Podcast?

This episode is 31 minutes long.

When was this Decoded: The Cybersecurity Podcast episode published?

This episode was published on March 7, 2025.

Can I download this Decoded: The Cybersecurity Podcast episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!