Collect NTFS forensic information with osquery
We’re releasing an extension for osquery that will let you dig deeper into the NTFS filesystem. It’s one more tool for incident response and data collection. But it’s also an opportunity to dispense with forensics toolkits and commerc… Continue reading Collect NTFS forensic information with osquery