Welcome to F for Forensics — the ultimate digital forensic podcast for cybersecurity professionals, investigators, and tech sleuths! Hosted by Ben and Alex, each episode explores the tools, techniques, and real-world cases behind computer forensics, file system analysis, data recovery, incident response, and more. Whether you're into NTFS carving, malware artifacts, or forensic imaging, this is your byte-sized boost of expert insight and geeky banter. Subscribe now for deep dives into digital evidence, tool reviews, interviews, and forensic case studies every week!
F is for Fileless in the Cloud – Attacks Without Endpoints
In this episode we explore a growing class of threats that leave investigators with no malware, no suspicious files, and sometimes no compromised device to examine. Learn how attackers abuse cloud services, APIs, automation tools, and legitimate administrative features to steal data and evade traditional detection. Discover where the evidence really lives, why logs have become the new crime scene, and how investigators must adapt to uncover attacks that exist only in actions, not artifacts.
#FforForensics, #DigitalForensics, #DFIR, #CloudForensics, #CyberForensics, #CloudSecurity, #IncidentResponse, #FilelessAttacks, #CloudInvestigations, #ForensicPodcast, #CyberSecurity, #ThreatHunting, #IdentitySecurity
2 Jun 2026
F is for Fileless in the Cloud: Attacks Without Endpoints (Trailer)
What if your organization was breached... and there was no malware to find?
No suspicious files.
No infected endpoint.
No obvious signs of compromise.
Just legitimate cloud tools being used for the wrong reasons.
In Season 2, Episode 3 of F for Forensics, we explore how modern attackers operate without dropping malware, how cloud-based attacks evade traditional defenses, and where investigators must look when the evidence isn't on a hard drive.
Listen now: F is for Fileless in the Cloud: Attacks Without Endpoints
#FforForensics #DigitalForensics #DFIR #CloudForensics #CyberForensics #IncidentResponse #CloudSecurity #ForensicPodcast
17 Feb 2026
F is for Federated Identity: When Login Is the Crime
In this episode we dive into the modern reality of identity-driven attacks. In today’s cloud-first world, attackers don’t need malware or exploits — they simply log in. Learn how federated identity systems like Microsoft Entra ID, Okta, and Google Workspace change the forensic landscape, why credentials and tokens have become the new attack surface, and how investigators can uncover evidence hidden inside authentication logs, access events, and OAuth permissions. If you want to understand how to investigate cases where login itself is the crime, this episode is essential listening.
#FforForensics #DigitalForensics #DFIR #CloudForensics #IdentitySecurity #FederatedIdentity #CyberForensics #IncidentResponse #CyberSecurity #AuthenticationLogs #MFA #TokenAbuse #ForensicPodcast
3 Feb 2026
F is for the Future – Digital Forensics in a Cloud-First World
Season 2 kicks off with a look at how digital forensics is evolving in a cloud-first world. We explore why traditional disk-based investigations no longer work, how identity and access have become the new evidence, and what investigators must learn to solve modern cases where logs, tokens, and timestamps matter more than files.
#FforForensics #DigitalForensics #DFIR #CloudForensics #CyberForensics #IdentitySecurity #IncidentResponse #ForensicPodcast #CyberSecurity
30 Dec 2025
F is for the Final Piece - Breaking a Case Wide Open
In the final episode of the year, we bring everything together—file systems, memory, timelines, flash storage, and user activity—to show how real digital cases are solved from start to finish. This episode walks through how a single overlooked artifact can become the final piece that breaks a case wide open. We also reflect on the season and tease bigger, deeper, and more advanced forensic topics coming next year. This is a must-listen finale you won’t want to miss.
#FforForensics #DigitalForensics #DFIR #ForensicPodcast #CyberForensics
23 Dec 2025
F is for Flash Storage – Evidence in the Modern Drive
In this episode, we break down the challenges and opportunities of flash storage forensics. From SSDs and USB drives to smartphones, learn how wear leveling, TRIM commands, and encryption impact evidence recovery—and why “deleted” doesn’t always mean gone. Real-world cases and practical techniques show how investigators adapt in the modern storage era.
#FforForensics, #FlashForensics, #DigitalForensics, #DFIR, #CyberForensics, #SSDForensics, #FlashStorage, #DataRecovery, #ForensicAnalysis, #ComputerForensics, #MobileForensics, #CyberCrime, #ForensicPodcast
2 Dec 2025
F is for Forensic Failures – What Not to Do
In this episode, we dive into the most cringe-worthy mistakes in digital forensics—and the lessons they teach. From overwriting original evidence to remote-wiped phones, timestamp disasters, and documentation nightmares, this episode highlights what not to do in the lab. Whether you're new to DFIR or a seasoned examiner, these real-world fails will make you wince, laugh, and sharpen your forensic discipline.
#FforForensics, #ForensicFails, #DigitalForensics, #DFIR, #CyberForensics, #IncidentResponse, #ChainOfCustody, #ForensicAnalysis, #ComputerForensics, #ForensicPodcast, #CyberCrime, #EvidencePreservation, #ForensicMistakes, #InvestigatorLife
25 Nov 2025
F is for Forensic Imaging – Capturing the Crime Scene
In this episode we break down one of the most essential skills in digital forensics: forensic imaging. Learn why bit-for-bit acquisitions matter, how write-blockers protect evidence, which tools professionals rely on (from FTK Imager to Cellebrite), and the real-world mistakes that can make or break a case. Whether you're imaging a laptop, server, mobile device, or USB drive, this episode teaches you how to preserve digital evidence the right way.
#FforForensics, #ForensicImaging, #DigitalForensics, #DFIR, #CyberForensics, #ForensicTools, #FTK, #EnCase, #WriteBlocker, #IncidentResponse, #ComputerForensics, #ForensicPodcast, #ChainOfCustody, #CyberCrime, #EvidencePreservation
6 Nov 2025
F for Firmware Forensics - Forensics Beyond the OS
In this episode of F for Forensics, we dig beneath the operating system into the hidden world of firmware forensics. Discover how BIOS, UEFI, IoT devices, and embedded controllers store traces of tampering and compromise. From analyzing firmware dumps to detecting persistent malware, this episode explores what happens when the investigation goes beyond the hard drive.
#FforForensics, #FirmwareForensics, #DigitalForensics, #DFIR, #CyberForensics, #UEFI, #BIOS, #EmbeddedSystems, #IoTForensics, #MalwareAnalysis, #IncidentResponse, #ForensicPodcast, #CyberSecurity, #ComputerForensics
25 Aug 2025
F is for Fragments in Time – Building Forensic Timelines
In this episode we explore the art of turning scattered digital artifacts into clear, chronological narratives. From file system timestamps to super timelines, learn how to connect actions, detect anomalies, and tell the real story hidden in your data. Listen now! Thank you for listening! Find us on social media @FforForensics
11 Aug 2025
F is for Finding Ghosts in RAM – Live Memory Forensics
In this episode we dive into the fast-paced world of live memory forensics. Discover how RAM can reveal active malware, stolen credentials, decrypted messages, and other volatile evidence before it disappears. Learn the tools, techniques, and real-world cases that prove RAM never lies—until you power off. Thank you for listening! Find us on social media @FforForensics
1 Jul 2025
F is for Footprints – Tracing User Activity Across Systems
In this episode, we uncover how digital footprints—from browser history and shell commands to registry hives and DNS logs—reveal a user’s activity even when they think it’s been erased. Real cases, practical tools, and expert tips for tracing every click, command, and mistake. #FforForensics #DigitalFootprints #UserActivity #DigitalForensics #DFIR #CyberForensics #WindowsRegistry #BrowserArtifacts #MemoryForensics #ComputerForensics #ForensicAnalysis #CyberCrime #ForensicPodcast Thank you f...
24 Jun 2025
F for Forensic Failures - What Not to Do
In this episode of F for Forensics, we unpack the most cringe-worthy mistakes in digital forensics—from overwriting original evidence to remote-wiped phones and timestamp disasters. Whether you’re a pro or just getting started, this episode will make you laugh, wince, and walk away wiser. Thank you for listening! Find us on social media @FforForensics
16 Jun 2025
Episode 4: “F is for Forensic Imaging: Capturing the Crime Scene
Episode 4: F is for Forensic Imaging – Capturing the Crime Scene In this episode of F for Forensics, Ben and Alex break down the essential process of forensic imaging—how investigators capture a complete, verifiable copy of digital media without altering the original. Learn about the tools, techniques, and real-world cases that make imaging the first critical step in any forensic investigation. #FforForensics #ForensicImaging #DigitalForensics #DFIR #CyberForensics #IncidentResponse #Forensi...
4 Jun 2025
F for Fileless Malware - Attacks That Leave No Trace
Ben and Alex uncover the stealthy world of fileless malware—attacks that run entirely in memory and leave no trace on disk. Learn how hackers use tools like PowerShell and WMI to slip past defenses, and how forensic pros can catch them using memory analysis, EDR tools, and clever log review. Thank you for listening! Find us on social media @FforForensics
22 May 2025
F for Firmware – Forensics Beyond the OS
Episode 2: F for Firmware – Forensics Beyond the OS In this episode, Ben and Alex dig into the hidden world of firmware forensics. Learn why malware in BIOS, UEFI, and IoT devices can persist beyond OS reinstalls—and how forensic pros uncover data hiding below the surface. From Binwalk to chip-off analysis, this one’s for the low-level nerds. Thank you for listening! Find us on social media @FforForensics
13 May 2025
F is for File System: Carving Hidden Evidence
Ben and Alex kick off F for Forensics by diving into file systems and the forensic magic of file carving. Learn how deleted data isn’t really gone, and how forensic tools recover hidden evidence that tells the real story. Thank you for listening! Find us on social media @FforForensics
Reach and audience
Public platform figures. Ratings count people who left a rating, not total listeners.
Apple Podcasts (US)
5.0 / 5
2 ratings
Host of F for Forensics?
Claim your podcast to manage its listing and keep your show details accurate.
Pod Engine is an independent podcast discovery and analytics service and is not affiliated with or endorsed by this podcast. Artwork and show content belong to their owners. Full legal notice.
Explore this show Podcast research with Pod Engine