Skip to content

Autopsy

Open source forensics platform for analyzing mobile devices and digital media.

Autopsy User Guide

Workflow

  1. Create a case for the data source you're investigating
  2. Select the data source to analyze
  3. Configure the ingest modules to extract specific artifacts from the data source
  4. Review the artifacts extracted by the ingest modules
  5. Create the report

Things to Research

  • Global Hash Lookup Settings
  • Global File Extension Mismatch Identification Settings
  • Global Keyword Search Settings
  • Global Interesting Items Settings
  • Yara Analyzer
  • 3rd party modules
  • Reference datasets