Youssef Moukadem

Cybersecurity Enthusiast | Computer Science Graduate | Cloud Enthusiast | Lifelong Learner

View on GitHub

🕵️‍♂️ DFIR (Digital Forensics & Incident Response)

📖 What is DFIR?

Digital Forensics and Incident Response (DFIR) combines the disciplines of forensics and incident handling.
It focuses on identifying, collecting, analyzing, and preserving digital evidence while responding to security incidents such as intrusions, malware, and insider threats.


📌 Modules Completed


📄 Reference Material


🎯 Skills Gained


📑 Case Studies

  1. Unattended (Windows Forensics)
    Investigated unauthorized access by analyzing Windows event logs, registry hives, and user activity.
    Read Full Case Study →

  2. Disgruntled (Insider Threat)
    Performed forensic analysis of file access and system artifacts to detect data exfiltration by a malicious insider.
    Read Full Case Study →

  3. Secret Recipe (Comprehensive DFIR Case)
    End-to-end investigation of a simulated breach involving malware, insider threat, and lateral movement.
    Used multiple forensic tools (KAPE, Autopsy, Velociraptor) to collect artifacts, analyze evidence, and report findings.
    Read Full Case Study →


✅ Lessons Learned


🔗 Navigation