DFIR: SANS SIFT 3.0 Released
SIFT (SANS Investigative Forensic Toolkit) 3.0 has been released. I plan on doing a series of blog posts to introduce readers to some of the powerful tools that make up the SIFT. The SIFT is free, open source, and consists of many tools that forensic examiners utilize in an exam. Thank you to friend and SANS Faculty Fellow Rob Lee (aka Giant Persistent Friend) for all of his work through the years on maintaining this for the DFIR community.
If there is a certai functionality or tool in SIFT you would like to see featured, drop me a comment below.
Happy DFIR SIFT-ing!