This project demonstrates a basic digital forensic investigation using Autopsy, an open-source digital forensics platform. We analyze a sample E01 disk image from Oddin Forensic to identify deleted files, web artifacts, and generate a case report.
- Autopsy (GUI digital forensics tool)
- E01 forensic image from Oddin-Forensic
- Windows 10 host or VM
- Created a new Autopsy case
- Added E01 disk image as a data source
- Analyzed deleted files and web history
- Exported an HTML report of findings
- Basic forensic disk image analysis
- Using Autopsyβs modules: File analysis, Web Artifacts, Reports
- Understanding structure of forensic evidence
Sample forensic image:
π https://github.com/oddin-forensic/autopsy-sample-case