Forensics MS365
数字取证社区讨论BEC案件数据分析挑战,利用UAC日志和微软工具提取证据,但受限于数据隐私无法使用外部AI服务。本地LLM性能不足,寻求自托管AI解决方案如Ollama与OpenWebUI以提升分析能力。 2025-7-7 18:33:35 Author: www.reddit.com(查看原文) 阅读量:9 收藏

r/computerforensics icon

Go to computerforensics

r/computerforensics

A banner for the subreddit

Dedicated to the branch of forensic science encompassing the recovery and investigation of material found in digital devices, often in relation to computer crime. This field involves the application of several information security principles and aims to provide for attribution and event reconstruction following forth from audit processes. This subreddit is not limited to just personal computers and encompasses all media that may also fall under digital forensics (e.g., cellphones, video, etc.).


Members Online

Hope this belongs here.

I’m working on a BEC case at one of our clients and using UAC logs to collect the evidence. The Microsoft Extractor Suite and Analyzer Suite are a blessing and help me a lot (shout-out to the creators).

But sometimes you need the power of AI to make certain connections, summarize events or use raw logs to correlate findings. This is where the shoe pinches. Since I’m working with client data, I don’t want to expose it to external entities.

I’ve experimented with local LLMs on RTX 4090s, but I’m not getting the same results as with OpenAI or ChatGPT (especially on larger datasets). We have some servers with Hetzner, and I noticed that both Hetzner and OVHCloud offer dedicated AI servers.

So here’s the question: Is anyone successfully using, for example, Ollama with OpenWebUI on self-hosted servers? Is it possible to get the same results that OpenAI offers?


文章来源: https://www.reddit.com/r/computerforensics/comments/1lu22hs/forensics_ms365/
如有侵权请联系:admin#unsafe.sh