Skip to content

Sniper Incident Response

Questions are the answer

Sniper IR

Free DFIR Challenges

Free DFIR challenges including full disk and memory captures

Free Challenges

Infosec Career Roadmap

Free 120 day guide to a career in infosec

0 to 120 Infosec Roadmap


Infosec Training

coming soon


Building your own lab

My favorite way to learn something new is with hands on experience. It’s easy to read a blog a…

Sniper Incident Response – CactusCon

Sniper Incident Response – How did they get in?

How did they get in? Question number 4 in our Big 4. It may seem counterintuitive to try and solve t…

Sniper Incident Response – Where did they go?

Where did they go? This question is all about lateral movement and knowing the scope of the infectio…

Sniper Incident Response – Are they still here?

Are they still here? This question plays an important part of your investigation. If there is an act…

Sniper Incident Response – What did they take?

What did they take? This question is always a key priority for lawyers. Knowing what data was taken …

Introducing Sniper Incident Response

The Problem and the Solution The current method of doing forensics is slow and outdated. One at a ti…

Questions are the answer

Theres nothing like the adrenaline rush of being onsite and starting a new case. Going through fresh…

Follow along the journey

Follow me on social and never miss a post from this blog. Only original content and minimalist views, shared daily on social.