Security Wire Weekly

Jun 5 2008   9:11AM GMT

Threat Monitor: Windows registry forensics guide — Investigating hacker activities



Posted by: Jessica Scarpati
Threat Monitor

The Windows registry can be used as a helpful tool for professionals looking to investigate employee activity or track the whereabouts of important corporate files. In this tip, contributor Ed Skoudis unveils several commands and explains how investigators and administrators can interact with the registry to analyze a compromised system.

Comment on this Post

Leave a comment: