Viewed
A skill, applied
Windows forensics
I use Prefetch, user-profile artefacts and remote-support session records to reconstruct execution when early EDR logs are missing, including a Quick Assist and NetSupport intrusion.
Experience at Growing MSSP with Offensive Services
All cards in this section are viewed.