Skip to main content
COSMICBYTEZLABS
NewsSecurityHOWTOsToolsStudyTraining
ProjectsNewsletterHire MeAbout
Subscribe

Press Enter to search or Esc to close

News
Security
HOWTOs
Tools
Study
Training
Projects
Newsletter
Hire Me
About
RSS Feed
Reading List
Subscribe

Stay in the Loop

Get the latest security alerts, tutorials, and tech insights delivered to your inbox.

Subscribe NowFree forever. No spam.
COSMICBYTEZLABS

Your trusted source for IT intelligence, cybersecurity insights, and hands-on technical guides.

1310+ Articles
157+ Guides

CONTENT

  • Latest News
  • Security Alerts
  • HOWTOs
  • Checklists
  • Projects
  • Exam Prep

RESOURCES

  • Search
  • Browse Tags
  • Newsletter Archive
  • Reading List
  • RSS Feed

COMPANY

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Service

© 2026 CosmicBytez Labs. All rights reserved.

System Status: Operational
All tags
15 articles

#forensics

All CosmicBytez Labs articles tagged #forensics, across news, security advisories, how-to guides, and projects.

  • HOWTOMay 25, 2026

    Velociraptor DFIR Setup, Hunts, and Forensic Collection

    Deploy Velociraptor for endpoint visibility, run fleet-wide hunts, collect forensic artifacts, and accelerate incident response with VQL queries.

  • ProjectApr 8, 2026

    Velociraptor DFIR: Endpoint Forensics and Incident Response

    Deploy Velociraptor — the open-source DFIR platform — to collect forensic artifacts, run live endpoint hunts with VQL, and build an incident response...

  • HOWTOFeb 11, 2026

    SentinelOne Control vs Complete Feature Comparison

    This document provides a comprehensive comparison between SentinelOne Singularity Control and Singularity Complete SKUs to help MSP teams understand the...

  • HOWTOFeb 11, 2026

    SentinelOne Data Retention and Storage Management

    Organizations using SentinelOne Singularity Complete receive 14-365+ days of Deep Visibility EDR data retention by default. This historical telemetry...

  • HOWTOFeb 11, 2026

    SentinelOne Deep Visibility Threat Hunting

    Deep Visibility is SentinelOne's EDR telemetry engine that provides comprehensive endpoint data collection for threat hunting, incident investigation, and...

  • HOWTOFeb 11, 2026

    Deploy SentinelOne Policy

    Deploy, manage, and validate SentinelOne security policies across your endpoint estate using the SentinelOne Management API. This automated workflow supports:

  • HOWTOFeb 11, 2026

    SentinelOne File Fetch and Forensic File Collection

    During threat investigations, security analysts need to retrieve suspicious files from endpoints for deeper forensic analysis. Traditional methods...

  • HOWTOFeb 11, 2026

    SentinelOne Forensics Rollback and Remediation

    This document provides comprehensive procedures for forensic evidence collection, ransomware rollback, and threat remediation using SentinelOne Complete...

  • HOWTOFeb 11, 2026

    Invoke SentinelOne Threat Hunt

    Proactive threat hunting is essential for identifying sophisticated threats that evade automated detection systems. This script automates the process of...

  • HOWTOFeb 11, 2026

    SentinelOne Policy Configuration Best Practices

    This guide provides comprehensive best practices for configuring SentinelOne policies in MSP environments managing multiple client sites with Singularity...

  • HOWTOFeb 11, 2026

    SentinelOne Remote Shell Operations

    Full Remote Shell is a SentinelOne Complete feature that provides authorized administrators with secure, native command-line access to managed endpoints...

  • HOWTOFeb 11, 2026

    SentinelOne STAR Custom Detection Rules

    Storyline Active Response (STAR) is SentinelOne's cloud-based automated hunting, detection, and response engine that allows security teams to create...

  • HOWTOFeb 11, 2026

    SentinelOne Threat Investigation Workflow

    When SentinelOne detects a threat on an endpoint, security analysts must quickly investigate the alert to determine if it's a genuine malware infection,...

  • HOWTOFeb 11, 2026

    SentinelOne Timeline Forensics and Attack Chain Analysis

    Understanding the complete attack chain requires correlating hundreds of events (process creation, network connections, file modifications, registry...

  • ChecklistFeb 9, 2026

    Incident Response Checklist

    Step-by-step incident response checklist following NIST SP 800-61 framework. Covers preparation, detection, containment, eradication, recovery, and...