file-recovery▌
4 indexed skills · max 10 per page
analyzing-disk-image-with-autopsy
mukul975/Anthropic-Cybersecurity-Skills · analyzing-disk-image-with-autopsy
Perform comprehensive forensic analysis of disk images using Autopsy to recover files, examine artifacts, and build investigation timelines.
performing-disk-forensics-investigation
mukul975/Anthropic-Cybersecurity-Skills · performing-disk-forensics-investigation
Conducts disk forensics investigations using forensic imaging, file system analysis, artifact recovery, and timeline reconstruction to support incident response cases. Utilizes tools such as FTK Imager, Autopsy, and The Sleuth Kit for evidence acquisition, deleted file recovery, and artifact examination. Activates for requests involving disk forensics, hard drive analysis, forensic imaging, file recovery, evidence acquisition, or digital forensic investigation.
recovering-deleted-files-with-photorec
mukul975/Anthropic-Cybersecurity-Skills · recovering-deleted-files-with-photorec
Recover deleted files from disk images and storage media using PhotoRec's file signature-based carving engine regardless of file system damage.
analyzing-mft-for-deleted-file-recovery
mukul975/Anthropic-Cybersecurity-Skills · analyzing-mft-for-deleted-file-recovery
Analyze the NTFS Master File Table ($MFT) to recover metadata and content of deleted files by examining MFT record entries, $LogFile, $UsnJrnl, and MFT slack space using MFTECmd, analyzeMFT, and X-Ways Forensics.