top of page

macOS Forensics: Structure, Persistence, and Investigation

Pages Count

18 Pages

Links for the courses

P1 History of macOS and macOS File Structure

P2 From Live Data Capture to Image Mounting

P3 Evidence Profiling : Key Device Information, User Accounts, and Network Settings on macOS

P4 Understanding Partitioning Schemes, FileVault 2 and macOS Encryption: A User-Friendly Guide

P5 Exploring macOS Extended Attributes: The Hidden Metadata

You Didn’t Know Existed

P6 Investigating macOS File System Events: The Hidden Forensic Trail

P6.1 macOS File System Events: The Power of Spotlight

P7 Making Sense of macOS Logs(Part1): A User-Friendly Guide

P8 Log Analysis on macOS(Part 2) : A Creative Approach

P9 macOS System Artifacts: macOS Finder, GUI Configurations, Time Changes, Bluetooth, Printing, and Sharing

P10 macOS Tracking Users Activity ,Autoruns Application-Level Firewall and Forensic Insights

P11 Understanding macOS App Preference Files, (MRU) Files Shared File Lists and Account Artifacts for Digital Forensics

P12 Analyzing Safari Browser, Apple Mail Data and Recents Database Artifacts on macOS

P13 Using Pattern of Life (APOLLO) for macOS investigation

P14 Understanding macOS Document Versions and iCloud Storage, Syncing

P15 Intrusion Analysis and Incident Response on macOS: File Quarantine, Antivirus Mechanisms, and Memory Forensics Overview


<If I create any new Article will Post the same>


Investigating macOS Persistence                          : Click Me

macOS IR: Tactics, Log Analysis, and Tools         : Click Me

Your Instructor

Dean

Dean
bottom of page