
Incident Response
Cross-Org Handoff Forensics Kit
Packaging artifacts when another team continues the investigation: manifests, hashes, and human-readable deltas.
Nine lab-forward tracks spanning digital evidence basics through incident response packaging. Prices are informational—there is no checkout on this static preview.

Incident Response
Packaging artifacts when another team continues the investigation: manifests, hashes, and human-readable deltas.

Digital Evidence Basics
Collect, label, and preserve workstation artifacts without breaking the activity log trail you will rely on later.

Disk Forensics
Partition tables, file-system timelines, and deleted-file recovery paths explained with calm pacing.

Incident Response
Translate between SOC timelines and forensic depth: tagging, escalation, and evidence packaging.

Disk Forensics
Practice rebuilding user stories when journals truncate and logs disagree.

Memory Analysis
Pattern-first look for injected modules and suspicious parents without full reverse engineering.

Memory Analysis
Volatility-style triage without drowning in plugin lists: capture, stabilize, and summarize.

Digital Evidence Basics
PCAP-adjacent skills for people who usually live on disk: DNS, HTTP headers, and TLS metadata stories.

Reporting and Chain of Custody
Write findings readers trust: structure, uncertainty language, and custody notes that survive a second read.