Velociraptor Hands-On Tutorial: Advanced Distributed Forensic Collection and Analysis

Posted on in Presentations

Participants will learn how to setup and use Velociraptor, a powerful new open-source tool for network-based surgical forensic evidence collection and analysis, by walking through a series of real-life investigation scenarios including analysing program execution, searching for evidence of lateral movement, hunting for attacker IOCs and performing continuous security monitoring.

Please Note: This is a hands-on technical Lab and all attendees should bring their own Windows 10 laptop to fully participate.

Learning Objectives:
1: Learn how to deploy Velociraptor for network-based surgical forensic evidence collection and analysis.
2: Understand how to perform distributed evidence collection.
3: Create your own artifact hunts.

Michael Cohen


Founder, Velocidex Innovations

Nick Klein


Director of Klein & Co. Computer Forensics, SANS Certified Instructor

Analytics Intelligence & Response


Share With Your Community