FIR: APFS Forensic Analysis

FIR: APFS Forensic Analysis

Analyze relevant new features and explain their significance in forensic investigations.

The new Apple file system, APFS, that was very recently introduced in beta contains several new features that are very relevant from a forensic perspective. This project aims at analyzing relevant new features and explaining their significance in forensic investigations. Preferably, the project also results in a tool or plugin that parses various relevant traces from an APFS partition image.

Contact us

+31 (0) 15 284 79 99

fox@fox-it.com

Delft