Summary
磁盘取证与反磁盘取证方法论。理解蓝队如何从磁盘恢复删除文件、提取时间线、分析文件系统 artifact,以及红队如何进行反取证(安全删除、时间戳篡改、痕迹清除)。当需要规避磁盘取证或进行磁盘分析时使用
wgpsec/aboutsecurity
磁盘取证与反磁盘取证方法论。理解蓝队如何从磁盘恢复删除文件、提取时间线、分析文件系统 artifact,以及红队如何进行反取证(安全删除、时间戳篡改、痕迹清除)。当需要规避磁盘取证或进行磁盘分析时使用
npx skills add https://github.com/wgpsec/aboutsecurity
磁盘取证与反磁盘取证方法论。理解蓝队如何从磁盘恢复删除文件、提取时间线、分析文件系统 artifact,以及红队如何进行反取证(安全删除、时间戳篡改、痕迹清除)。当需要规避磁盘取证或进行磁盘分析时使用
Related neighbors and high-traction skills in the same topics — useful to compare before installing.
Master memory forensics techniques including memory acquisition, process analysis, and artifact…
9.8K installsProvides digital forensics and signal analysis techniques for CTF challenges.
7.4K installs>- Memory forensics playbook using Volatility 2/3. Use when analyzing memory dumps for malware …
2.9K installsUse for authorized digital forensics including memory dumps, disk timelines, PCAP investigation…
13 installsParse Chromium-based browser databases with Hindsight to extract and correlate browsing history…
574 installsInvestigate compromised Docker containers by analyzing images, layers, volumes, logs, and runti…
553 installsOther skills from wgpsec/aboutsecurity · top by installs.
npx skills add https://github.com/wgpsec/aboutsecurity
Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.
master