Skip to main content

Search

Items tagged with: dfir


JQ - is one of the most popular command line utilities for extracting and processing data from JSON files.

Here is a ultimate cheatsheet to the most useful JQ functions for #osint, #dfir, and #forensics:

https://www.sans.org/posters/json-and-jq-quick-start-guide/?msc=instructor-phil-hagen

Contributors twitter.com/SANSInstitute twitter.com/DavidSzili