Digital Forensics CTF
Computer Security
Project details
Description
Conducted a Capture-The-Flag style forensic investigation on a compromised disk image using a combination of live response, network forensics, and disk analysis:
- Booted the compromised image in a VM to analyze process memory, shell history, and persistent malware
- Used Autopsy for deep-dive disk analysis: recovering deleted files, tracking browser activity, and identifying user behavior patterns
- Cracked password hashes with John the Ripper, unlocking protected accounts and sensitive files
- Reconstructed a detailed attack timeline by correlating log events, timestamps, and recovered evidence
-
Start Date:
Mar 31th, 2025 -
End Date:
Apr 21th, 2025 -
Github:
Private -
Course:
EECS388 -
Course Topic:
Computer Security
7+
Years of Coding Experience
25
Completed CS Projects
3+