Oct 3 2008 9:00AM GMT
Posted by: Jessica Scarpati
Threat Monitor
Windows registry forensics: Investigating system-wide settings
Posted by: Jessica Scarpati

Information security forensic investigations can be a big job, but Windows registry command tools can make it easier. From querying autostart programs to getting the goods on every USB device ever connected to a particular Windows machine, these tools can streamline an investigation. Ed Skoudis explains which system-wide commands can aid an investigation.





