Kevin πŸ€–πŸ•΅οΈπŸΊ's Avatar

Kevin πŸ€–πŸ•΅οΈπŸΊ

@stark4n6.bsky.social

Lethal forensicator, researcher, developer, blogger, curator of many fine t-shirt designs, resident #DFIR beer drinker https://startme.stark4n6.com

929 Followers  |  87 Following  |  312 Posts  |  Joined: 22.06.2023  |  1.5662

Latest posts by stark4n6.bsky.social on Bluesky

I cannot stress this enough, asset management should be a big part of your cybersecurity response plan

28.10.2025 14:26 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Preview
Truth in Data Podcast Feature - CTFs I was asked to join my good friends Debbie, Jessica and Kim over at Hexordia for their Truth in Data podcast to talk one of my favorite to...

#Stark4N6: Truth in Data Podcast Feature - CTFs www.stark4n6.com/2025/10/trut...

27.10.2025 14:45 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
BSides NYC 2025 CTF - Forensics While I unfortunately couldn't attend the conference I did see that the BSides NYC CTF board was available still ( check here ). Christopher...

#Stark4N6: BSides NYC 2025 CTF - Forensics www.stark4n6.com/2025/10/bsid...

23.10.2025 19:26 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
S3:E10 // Picking apart the passcodes: Determining the method of unlock on devices - Magnet Forensics A common theme in digital forensics is putting the target behind the keyboard. One way to help this is around the use of passcodes and especially the use of biometrics. How can we determine though wha...

A common theme in #DFIR is putting the target behind the keyboard. One way to help is around the use of passcodes and especially the use of biometrics. On Oct 29, join us for our next #MobileUnpacked where @cscottvance.bsky.social will dive deeper into these topics: ow.ly/p1r550XgvXb

22.10.2025 19:01 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Overcoming mobile forensics challenges in workplace investigations - Magnet Forensics Mobile devices have become indispensable tools in the modern workplace, enabling more than just checking email. Employees now browse the web, access sensitive company data, and conduct daily business ...

On October 22, join us for a webinar where we'll share common challenges in #MobileForensics within #WorkplaceInvestigations, and how the combined power of Magnet #Verakey & #AxiomCyber help solve them: ow.ly/Erk350XeoFs #DFIR

17.10.2025 20:58 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
MALoney (It's in the name): OneDrive Quick Access What is Quick access? Quick access makes it simple to find your frequently used storage locations, inclu...

Did a little digging in Microsoft.FileUsageSync.db. Found some information to piece together OneDrive Quick Access. #DFIR
malwaremaloney.blogspot.com/2025/10/oned...

16.10.2025 03:42 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Streamline Digital Evidence Collection with CyberPipeΒ 5.2 CyberPipe, developed for incident response, is a PowerShell script facilitating efficient digital evidence collection in enterprise settings. Recent updates include improved collection methods, capabilities like QuickTriage for faster artifact gathering, and enhanced reliability with advanced error handling. Version 5.2 aims to streamline operations while ensuring forensic integrity and transparency. #DFIR

CyberPipe, a PowerShell script for digital evidence collection, has been updated with enhancements in collection, capabilities, and reliability. New features include intelligent collection with dual disk space validation, a QuickTriage profile, and improved BitLocker recovery. #DFIR

16.10.2025 14:23 β€” πŸ‘ 3    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
Preview
a man with the words well hello mr. fancy pants on the bottom Alt: a man with the words well hello mr. fancy pants on the bottom
14.10.2025 20:29 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

Anyone else's work issued laptop just bluescreen crash weekly or is it just me?!

14.10.2025 19:56 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Preview
Week 41 – 2025 Inside the Salesloft-Drift Breach: What It Means for SaaS & Identity SecurityIn this session, Permiso’s CTO will cover:- How attackers moved from GitHub β†’ AWS β†’ Salesforce using stolen OAuth to…

Week 41 - 2025 #DFIR
thisweekin4n6.com/2025/10/12/w...

12.10.2025 11:22 β€” πŸ‘ 2    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
Preview
MALoney (It's in the name): OneDrive Quick Access What is Quick access? Quick access makes it simple to find your frequently used storage locations, inclu...

Did a little digging in Microsoft.FileUsageSync.db. Found some information to piece together OneDrive Quick Access. #DFIR
malwaremaloney.blogspot.com/2025/10/oned...

08.10.2025 21:37 β€” πŸ‘ 2    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Cyber Unpacked with Magnet Forensics Feature I had the pleasure of taking part in a panel discussion for the Cyber Unpacked series with Magnet Forensics. What a great conversation with ...

#Stark4N6: Cyber Unpacked with @magnetforensics.bsky.social Feature www.stark4n6.com/2025/10/cybe...

08.10.2025 19:07 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
Cross-Platform DFIR Tools: MalChelaGUI onΒ Windows A trick and a treat this week with a quiet milestone for cross-platform DFIR tooling β€” MalChelaGUI now runs seamlessly inside Windows through Ubuntu WSL2, with zero configuration required. #DFIR #MalwareAnalysis

A trick and a treat this week with a quiet milestone for cross-platform DFIR tooling β€” MalChelaGUI now runs seamlessly inside Windows through Ubuntu WSL2, with zero configuration required. #DFIR #MalwareAnalysis

07.10.2025 19:50 β€” πŸ‘ 2    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
The 13th Annual Volatility Plugin Contest is Open! We are excited to announce that the Volatility Plugin ContestΒ is officially open for submissions! The annual Plugin Contest is your opportunity to: Directly contribute to the open source forensics …

The 13th annual @volatilityfoundation.org #PluginContest is now OPEN! This is a meaningful way to contribute to open source forensics & gain community-wide visibility for your work. And, as always, winners get cash prizes!

Submission Deadline: 31 December 2025

#dfir #memoryforensics

24.07.2025 18:59 β€” πŸ‘ 4    πŸ” 5    πŸ’¬ 0    πŸ“Œ 0

This is gonna be a good one, I may be biased!

01.10.2025 18:07 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
MALoney (It's in the name): OneDrive. Let's take this offline At the beginning of this year, I started adding data from the offline databases into OneDrive Explorer. This data enhanced...

In case you missed it. New release of OneDriveExplorer. It has a dedicated parser for MicrosoftListSync.db (offline mode). #DFIR

malwaremaloney.blogspot.com/2025/09/oned...

30.09.2025 02:27 β€” πŸ‘ 2    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Week 39 – 2025 Inside the Salesloft-Drift Breach: What It Means for SaaS & Identity SecurityIn this session, Permiso’s CTO will cover:- How attackers moved from GitHub β†’ AWS β†’ Salesforce using stolen OAuth to…

Week 39 - 2025 #DFIR
thisweekin4n6.com/2025/09/28/w...

28.09.2025 11:14 β€” πŸ‘ 2    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Preview
S3:E9 // NOW That’s what I call iOS: 26 - Magnet Forensics Apple has hit the jump to light speed and jumped from iOS 18 to iOS 26! In this episode of Mobile Unpacked we’ll explore the new changes and challenges Apple’s yearly upgrade cycle is bringing to the ...

This week's #MobileUnpacked is going to be a big one! Join us as @cscottvance.bsky.social explores the brand-new #iOS26, including UX changes of #LiquidGlass, and updates to the Phone & Messages app that could have serious impacts. Save your spot now: ow.ly/zr8150X0bp7

22.09.2025 13:42 β€” πŸ‘ 1    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Final Pre-Conference Notes for 2025 PancakesCon is this coming Sunday, the 21st of September (running into the 22nd for some of us!). It will start at 6AM Central US Time (Chicago), for a very good reason. No, I have not become a mor…

PancakesCon & @comfyconau.bsky.social are THIS SUNDAY, September 21st. Here are some final notes on how to make the most of virtual conferences and where to find useful information! pancakescon.com/2025/09/17/f...

18.09.2025 02:55 β€” πŸ‘ 42    πŸ” 27    πŸ’¬ 0    πŸ“Œ 3

The death of Robert Redford (RIP) means the window to rewatch Hackers in honor of the 30th anniversary has officially closed and it is now time to re-watch Sneakers. (Time to rewatch Sneakers will continue indefinitely.)

16.09.2025 22:06 β€” πŸ‘ 166    πŸ” 41    πŸ’¬ 5    πŸ“Œ 4
The new customizable Backup Option

The new customizable Backup Option

A new UFADE Version is out! (github.com/prosch88/UFA...) New in 1.0.1:

Customizable backup functions,

The option to decrypt existing iTunes backups,

Interface improvements,

More consistent display on different platforms,

Includes the latest identifiers for the new iPhone and Apple Watch models

17.09.2025 09:17 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Post image Post image

Happy 30th anniversary to Hackers!

16.09.2025 00:34 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

If you’re cold, they’re cold. Bring them inside

11.09.2025 18:49 β€” πŸ‘ 317    πŸ” 49    πŸ’¬ 15    πŸ“Œ 3
AI vs. Windows Forensics
YouTube video by 13Cubed AI vs. Windows Forensics

Happy 9/9! It's time for a new 13Cubed episode. πŸŽ‰ I'm sure you're as sick of hearing about AI as I am, but I have some thoughts... Let's talk about it. www.youtube.com/watch?v=lvkB... #DFIR

09.09.2025 12:06 β€” πŸ‘ 2    πŸ” 1    πŸ’¬ 0    πŸ“Œ 1

haha that's unfortunate, I'm sure it'll show up eventually. This happens often when I tuck something away in my desk then look for it months later

05.09.2025 02:10 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Guess who forgot his test phone password and now has to wipe it πŸ™ƒ

04.09.2025 03:01 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Preview
Release v2.3.0 Β· abrignoni/iLEAPP iLEAPP v2.3.0 New features : Support of iTunes encrypted backups New Unified Logs artifacts Progress / status count to console output Improve media file lookup speed (~20x faster) New modules :...

Good news, iLEAPP v2.3.0 release is out, go grab it now!

github.com/abrignoni/iL...

02.09.2025 13:39 β€” πŸ‘ 1    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Post image

#Stark4N6: Forensics StartMe Updates (9/1/2025) #DFIR www.stark4n6.com/2025/09/fore...

02.09.2025 00:46 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

Got some vintage wax packs for fun

31.08.2025 23:31 β€” πŸ‘ 6    πŸ” 1    πŸ’¬ 1    πŸ“Œ 0
Preview
T-Shirts by stark4n6 | TeePublic Shop t-shirts, phone cases, hoodies, art prints and mugs created by independent artists from around the globe.

Another 35% off sale on the shop! #DFIR www.teepublic.com/user/stark4n6

31.08.2025 13:32 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

@stark4n6 is following 17 prominent accounts