_                        _ _  __  __
   _ __ ___   __ _ _ __| | __   ___ __ _ _ __ __| (_)/ _|/ _|
| '_ ` _ \ / _` | '__| |/ /  / __/ _` | '__/ _` | | |_| |
  | | | | | | (_| | |  |   <  | (_| (_| | | | (_| | |  _|  _|
|_| |_| |_|\__,_|_|  |_|\_\  \___\__,_|_|  \__,_|_|_| |_|

Home

This is my website, migrated to the cloud!

It used to live in my house on a raspberry pi

Now it lives in Azure.

DFIR Practice

NOTE: I used AI to prepare the reports based on my own work and notes

Below is links to a report and methodology used to analyse a compromised VM image I downloaded from https://www.ashemery.com/.

Case File 001 – Compromise of a Windows Server 2008 Web Server An end-to-end digital forensic investigation including disk analysis, memory forensics, attack reconstruction, timeline analysis, and incident reporting.

Case1 Report Case1 Methodology