drop multiple forensic artifact csvs · identify earliest attacker artifact · calculate total dwell time · map attack phase timeline · identify detection gap · compare to industry benchmarks · runs locally
artifact csvs
drop forensic artifact csvs
or click
drop evtx · prefetch · mft · network csv exports