Attacks get all the attention, but what happens after a breach is just as critical. In this session, we'll step into the shoes of an incident responder using Velociraptor, a free open-source DFIR tool. You'll see how analysts collect evidence from a compromised endpoint, spot signs of malicious activity, and reconstruct a timeline of what happened.
Target audience identified by presenter: Cybersecurity ;All Conference Attendees;Technology Leadership;Technology Systems and User Support;Network Support ;Technology Integration