Security Wire Weekly

Oct 3 2008   9:00AM GMT

Windows registry forensics: Investigating system-wide settings



Posted by: Jessica Scarpati
Threat Monitor


Information security forensic investigations can be a big job, but Windows registry command tools can make it easier. From querying autostart programs to getting the goods on every USB device ever connected to a particular Windows machine, these tools can streamline an investigation. Ed Skoudis explains which system-wide commands can aid an investigation.

Comment on this Post

Leave a comment: