Home

Awesome

Anti-Forensics

A Repository to Track Anti-Forensic Techniques

This list is built based on the response of the #DFIR community and the techniques we currently cover in our Anti-Forensics course.

Do you have any cool Anti-Forensic ideas to share? #DFIR #DigitalForensics

https://twitter.com/binaryz0ne/status/1618828773268520961

Data, Web, and Application Related

Operating System, Virtualization, and Cloud Related

Logs Related

File System Related

Time Related (Wasting the analyst time by misleading them)

Videos

Good Anti-Forensics AF, https://www.youtube.com/watch?v=A4GYhGDCRSM

Great ideas

  1. You don't have to do anti-forensics in most cases; it's likely not necessary.
  2. Don't delete artifacts when you can configure the system so that they're never written."" @Keydet89, https://twitter.com/keydet89/status/1618954586685075459

More coming...