explainx.ai0k
TrendingNewsPathwaysSkills
Pricing
explainx.ai

Upskill in AI — 16 free pathways, live workshops & bootcamps, and 50+ courses from practitioners. Plus the skills, tools, and MCP servers to practice on.

follow us

follow on google

Add explainx.ai as a preferred source

corporate training

support@explainx.ai

get started

Find your pathTake Free Evaluation

community

Join the community

learn

mind: share how you thinkpathways — start freeworkshopsbootcampscoursescertificationsmock testsexplainx universitycorporate traininglearn skills & mcp

discover

skillsmcp serversexplainx mcptoolsmdx readeragentsllmsdesignsdictionaryagi trackerfelony benchranks

company

aboutvisionmissionteaminstructorsteach on explainxpartnershipscommunityhackathonscareers

content

daily AI newsstate of AI — live resultsblogreleasespromptsgeneratorsresource libraryfor LLMsexplainx.ai kids

solutions

all solutionsdeveloper upskillingmarketing upskillingproduct manager upskillingleadership upskilling

newsletter · weekly

Get AI news, tools, and insights in your inbox.

supportcontactprivacytermsdata rightshow we create contentsubmission guidelines

© 2026 AISOLO Technologies Pvt Ltd

explainx.ai

home/skills/tag/forensics
skill tag

forensics▌

38 indexed skills · max 10 per page

skills (38)

analyzing-usb-device-connection-history

mukul975/Anthropic-Cybersecurity-Skills · analyzing-usb-device-connection-history

0

Investigate USB device connection history from Windows registry, event logs, and setupapi logs to track removable media usage and potential data exfiltration.

analyzing-prefetch-files-for-execution-history

mukul975/Anthropic-Cybersecurity-Skills · analyzing-prefetch-files-for-execution-history

0

Parse Windows Prefetch files to determine program execution history including run counts, timestamps, and referenced files for forensic investigation.

analyzing-linux-system-artifacts

mukul975/Anthropic-Cybersecurity-Skills · analyzing-linux-system-artifacts

0

Examine Linux system artifacts including auth logs, cron jobs, shell history, and system configuration to uncover evidence of compromise or unauthorized activity.

analyzing-powershell-empire-artifacts

mukul975/Anthropic-Cybersecurity-Skills · analyzing-powershell-empire-artifacts

0

Detect PowerShell Empire framework artifacts in Windows event logs by identifying Base64 encoded launcher patterns, default user agents, staging URL structures, stager IOCs, and known Empire module signatures in Script Block Logging events.

performing-cloud-forensics-with-aws-cloudtrail

mukul975/Anthropic-Cybersecurity-Skills · performing-cloud-forensics-with-aws-cloudtrail

0

Perform forensic investigation of AWS environments using CloudTrail logs to reconstruct attacker activity, identify compromised credentials, and analyze API call patterns.

performing-memory-forensics-with-volatility3

mukul975/Anthropic-Cybersecurity-Skills · performing-memory-forensics-with-volatility3

0

Analyze volatile memory dumps using Volatility 3 to extract running processes, network connections, loaded modules, and evidence of malicious activity.

performing-network-forensics-with-wireshark

mukul975/Anthropic-Cybersecurity-Skills · performing-network-forensics-with-wireshark

0

Capture and analyze network traffic using Wireshark and tshark to reconstruct network events, extract artifacts, and identify malicious communications.

implementing-cloud-trail-log-analysis

mukul975/Anthropic-Cybersecurity-Skills · implementing-cloud-trail-log-analysis

0

Implementing AWS CloudTrail log analysis for security monitoring, threat detection, and forensic investigation using Athena, CloudWatch Logs Insights, and SIEM integration to identify unauthorized access, privilege escalation, and suspicious API activity.

performing-network-traffic-analysis-with-zeek

mukul975/Anthropic-Cybersecurity-Skills · performing-network-traffic-analysis-with-zeek

0

Deploy Zeek network security monitor to capture, parse, and analyze network traffic metadata for threat detection, anomaly identification, and forensic investigation.

extracting-credentials-from-memory-dump

mukul975/Anthropic-Cybersecurity-Skills · extracting-credentials-from-memory-dump

0

Extract cached credentials, password hashes, Kerberos tickets, and authentication tokens from memory dumps using Volatility and Mimikatz for forensic investigation.

prevpage 2 / 4next