Endpoint Security, Digital Forensics & Malware Analysis
Malware types, Windows Event IDs, EDR alerts, and IOC detection at the endpoint.
TOPIC 3.2Defender, SmartScreen, WDAC, Credential Guard, and built-in security features.
LINK → Forge 3.3AppArmor, UFW, auditd, and Linux-native security mechanisms.
LINK → ScriptPyramid of Pain, MITRE ATT&CK, threat actor TTPs, and attribution challenges.
TOPIC 3.5Order of volatility (RFC 3227), evidence collection, chain of custody.
TOPICForensic imaging, raw vs E01, hashing, mounting, and file comparison techniques.
CREATE 3.7VirusTotal reports, sandbox analysis, strings output, IOC extraction.
TOPICUse traceroute/tracert to map network paths and identify latency issues.
Packet capture basics, interface navigation, and filter syntax.
Configure and verify IP addressing on network devices.
Examine Ethernet frame structure, MAC addresses, and EtherTypes.
Analyze TCP connection establishment with SYN, SYN-ACK, ACK.
Network reconnaissance, port scanning, and version detection.
Complete all topics and labs, then take the Week 3 assessment to test your knowledge.
Begin Evaluation