Topic
dfir
5 posts
- ArticleAug 2026 · 30 min
The Machine Has No Disk: Forensic Readiness for AI Agent Runtimes
Forensic readiness for AI agent runtimes — Cloudflare Computer, NVIDIA OpenShell, and the collapse of the endpoint as an evidence source.
- ArticleJul 2026 · 15 min
Coercion to krbtgt: NTLM Relay and ADCS ESC8 in 2026
A full ESC8 walkthrough against a lab domain, then the forensic reconstruction — why the certificate serial, not the source IP, is the artifact that ties the whole chain together.
- ToolsAug 2025 · 2 min
MAES: The M365 Analyzer & Extractor Suite
At IONSEC, we’re excited to introduce MAES: The M365 Analyzer & Extractor Suite — an open-source platform purpose-built to simplify and accelerate Microsoft 365 (M365) forensic investigations.
- ToolsAug 2025 · 3 min
DO Audit Log Scraper v2.0
The DO Audit Log Scraper is a Chrome/Chromium extension that enables forensic-grade audit log extraction.
- ToolsAug 2025 · 2 min
Forti-DFIR: Open-Source Framework for Fortinet Forensics & Incident Response
At IONSEC, we’re proud to introduce Forti-DFIR — an open-source initiative created to give security teams the tools they need for forensic investigations and incident response in Fortinet environments.