4 Podcast Episodes
Latest 21 May 2022 | Updated Daily
Forensic Lunch 5/1/20 - Oleg Skulkin (FeatureUsage), Brian Marks (Office 365) , Lee Whitfield 4CAST
The Forensic Lunch with David Cowen and Matthew Seyer
This week the Forensic Lunch went into Overtime! We went a full 25 minutes over the usual hour because we had so much to talk about. On this weeks show: Matt Seyer (@forensic_matt) talked all about the etl parser and monitor he's working on in Rust! https://github.com/forensicmatt/RsWindowsThingies Oleg Skulkin (@oskulkin) talked about how he approaches Sunday Funday's (he's won 3!) and about his new blog post about the Windows FeatureUsage artifact. https://www.group-ib.com/blog/featureusage Brian Marks (@briandfir) talked about how the Office365 UAL MailboxItemsAccessed Audit event works and what the entry details mean Lee Whitfield (@lee_whitfield ) talked through the Forensic 4Cast Awards nominations that end in two weeks, and Matt and I gave who we will be nominating. https://forensic4cast.com/2020/02/2020-forensic-4cast-awards-nominations-are-open/
1hr 25mins
1 May 2020
Forensic Lunch 3/8/19 Eric Zimmerman, Lee Whitfield , Kape, Forensic 4Cast, Nominations
The Forensic Lunch with David Cowen and Matthew Seyer
The Forensic Lunch 3/8/19! The twice a month, usually, podcast/videocast that's all about DFIR This week we have: Eric Zimmerman, talking about KAPE Lee Whitfield, talking about the Forensic 4Cast award nominations
1hr 1min
15 Apr 2020
Forensic Lunch 1/10/20 with Lee Whitfield
The Forensic Lunch with David Cowen and Matthew Seyer
This week Lee Whitfield joins us to discuss the DFIR Summit and Matt showed us his rust based live windows monitors for DFIR Research
1hr
15 Apr 2020
Forensic Lunch 9/25/15 with Mari Degrazia, Lee Whitfield and Suzanne Widdup
The Forensic Lunch with David Cowen and Matthew Seyer
This broadcast we have: Mari Degrazia talking about testing MFT parsers and what goes into them. Lee Whitfield talking about the events of the week Suzanne Widdup talking about her work on the Verizon DBIR and a solicitation for your involvement A talk about Cortana's location tracking storage
1hr
15 Oct 2015