By
•
January 12, 2025
•
Daily Blog
srum
sunday funday
•
Hello Reader,
It's Sunday! That means it's time for another challenge. This week are going back to our roots with some digital forensics artifact testing. SRUM is collected, parsed and relied on by multiple types of investigations but how many of us have ever validated the metrics it presents?
The Prize:
The Rules:
$100 Amazon Giftcard
The Challenge:
With so many of us relying on SRUM for so many different uses its time to do some validation on the counters so many people cite. For this challenge you will test and validate the following SRUM collected metrics and document if they accurately capture the data or if there is a skew present.
Use cases to test and validate on Windows 11 or Windows 10 but you must document which:
1. Copying data between two drives using copy and paste (look for disk read and write activity )
2. Uploading data to an online service of your choice (look for process network traffic)
3. Wiping files (look for disk read and write activity)
bonus points for attempting different popular utilities/functions.