

This session kicks off our DFIR (Digital Forensics & Incident Response) module with a beginner-friendly introduction to the core concepts and workflows used by forensic analysts. We’ll break down the fundamentals of Digital Forensics, explore the different branches within the field, and walk through how evidence is identified, acquired, and preserved in real investigations. Attendees will also get an overview of the most common forensic tools and techniques used across memory forensics, disk forensics, network forensics, and more. Whether you're new to DFIR or looking to strengthen your foundational knowledge, this session sets the stage for the hands-on labs and deeper topics coming in future meetups. Bring your curiosity and get ready to explore how investigators uncover the truth hidden in systems, logs, and artifacts.
