Digital-Forensics-Discord-Server / TheHitchhikersGuidetoDFIRExperiencesFromBeginnersandExperts

The official repo for a project involving a crowdsourced DFIR book. The main purpose of this book is to give anyone interested an opportunity to write a chapter of a book to get their name out there, get a publication on their resume with an actual ISBN number, and ideally lower the bar for people to contribute something back to the DFIR Community. Want to write a chapter? Let me know and let's make it happen!
MIT License
190 stars 22 forks source link

Chapter 6: Gamification of DFIR - Playing CTF's #16

Closed AndrewRathbun closed 2 years ago

AndrewRathbun commented 2 years ago

@stark4n6 List of tools is looking great. I think adding hyperlinks to each one (if possible) would add some nice value. Thoughts on that? If you're good with it, we'll wanna move EZ Tools to a separate line from KAPE, IMO.

https://github.com/Digital-Forensics-Discord-Server/CrowdsourcedDFIRBook/blob/23e406d0048e59168e1fb28f7dcc7129e220c624/manuscript/chapter9.md?plain=1#L106-L149

AndrewRathbun commented 2 years ago

Putting this here so I don't forget, we'll want to remove the space before Hindsight here:

https://github.com/Digital-Forensics-Discord-Server/CrowdsourcedDFIRBook/blob/23e406d0048e59168e1fb28f7dcc7129e220c624/manuscript/chapter9.md?plain=1#L111

EDIT: fixed - https://github.com/Digital-Forensics-Discord-Server/CrowdsourcedDFIRBook/commit/4bf0288cd9a454c4a51c6d5bd5c7d0fe6ff98b21

AndrewRathbun commented 2 years ago

Lastly, I made some changes to the previously bolded headers that weren't rendering properly, as seen here: https://github.com/Digital-Forensics-Discord-Server/CrowdsourcedDFIRBook/commit/23e406d0048e59168e1fb28f7dcc7129e220c624. I converted them to Markdown headers using ## because otherwise they were showing up on the same line as the first sentence of the paragraph they were supposed to be over. A solution to that would've been just adding another row below your **text goes here** but also might as well just use Markdown headers, I suppose. If you want any indented more so, just modify the appropriate number of # for the respective header and we should be good there.

stark4n6 commented 2 years ago

Sounds good, I can get those hyperlinks added in the next round of updates/edits. Thanks for the syntax fixes as I've used a few different markdown sites with mixed results.

AndrewRathbun commented 2 years ago

image

FYI looks like you've bolded the subheading for What is a CTF?. Just showing you that it appears to render as bolded in the Table of Contents, as well. Up to you if you want to keep that since its your chapter.

stark4n6 commented 2 years ago

Definitely not intended, odd

stark4n6 commented 2 years ago

Should be fixed now as well as the .txt is updated with tool paths and the latest changes

nisargsuthar commented 2 years ago

Excellent chapter @stark4n6!

Since you've already covered CTFs very aptly, I have a suggestion that you include a topic for write-ups, explaining how they are important not only to practice documentation (which is a must skill for people in DFIR), but also giving back to the community. Or if you'd like I could write the section for you :)

Maybe you could include it under Toss a Coin in the Tip Jar and make Tips for playing it's own section with Prior & During as subsections.

stark4n6 commented 2 years ago

The chapter is still a work in progress but thanks for the suggestions. I definitely want to add the writeups to the "For Profit" section.

AndrewRathbun commented 2 years ago

Hey there! I'm tentatively setting 7/31/2022 as a milestone for publishing v1.0 of this book. We'll have the title decided in the next couple weeks which will be the first of multiple administrative tasks we'll complete in July. At this point, please let me know if you intend to have at least a working, editable version of your chapter by 7/31/2022.

If not, please know that's perfectly fine. It doesn't mean your chapter won't get published, it just won't get published in v1.0. It'll simply be added when it's ready to be published and I'll push out a new version of the book, (i.e., V1.3, v1.7, etc) with your new content. I hope we have about 10 ready to go by 7/31/2022 so we can push to publish v1.0 shortly thereafter, but I won't know that until I hear from you! So, please let me know!

stark4n6 commented 2 years ago

I should be done by the end of this week or next. I will let you know when review is needed.

AndrewRathbun commented 2 years ago

Dead Link Checker is hitting on the DFRWS link here: https://github.com/Digital-Forensics-Discord-Server/TheHitchhikersGuidetoDFIRExperiencesFromBeginnersandExperts/blob/2b63a20b992bb57f0e5381469860aaf58d97e393/manuscript/chapter9.txt#L52

Just passing along. No action needed as it may correct itself, but just a heads up, sir.

AndrewRathbun commented 2 years ago

@stark4n6 I've added my edits: https://github.com/Digital-Forensics-Discord-Server/TheHitchhikersGuidetoDFIRExperiencesFromBeginnersandExperts/commit/18831d93c817f9cda0bb61325c52cc83759d68bd

Feel free to adjust as necessary. Great work!

AndrewRathbun commented 2 years ago

As we approach publishing v1 of this book, please review the most recent files uploaded to this folder and ensure your chapter looks the way you want it to. If not, please make appropriate adjustments and advise me to regenerate the preview book files.

Additionally, if you've not been invited to the book on Leanpub yet, please provide me with an email address so I can invite you on there.

Thank you for completing your chapter! I hope this has been a fulfilling experience for you!