This course aims to teach learners how to utilize Velociraptor, a DFIR tool, for hunting at scale using its powerful query language VQL. The course covers adapting to fluid DFIR intrusions, performing analysis directly on the endpoint, and leveraging digital forensic analysis techniques for detection. The teaching method includes providing examples of Velociraptor's use in typical DFIR scenarios and demonstrating the process of detection, VQL implementation, and network hunting. The intended audience for this course includes digital forensics and incident response professionals looking to enhance their skills in threat hunting and response using Velociraptor.
Overview
Syllabus
Velociraptor: Dig Deeper with Mike Cohen [OSDFCon 2021]
Taught by
BasisTech