WEBVTT

00:01.350 --> 00:09.360
Another useful way to create a report is to use someone built in to CSI Linux, and this is really useful

00:09.360 --> 00:11.460
that they actually have this in there.

00:11.490 --> 00:16.200
It kind of ties into some of the tools that that they present in CSI Linux.

00:16.500 --> 00:24.510
And in order to use it, we can just simply click on this Linux starter case here and let me show you

00:24.510 --> 00:25.920
what it's going to look like.

00:26.580 --> 00:31.500
So this is the generic sample report that comes out of CSI Linux.

00:31.500 --> 00:37.320
And once we start a case, it'll start generating this report and start populating certain fields.

00:37.350 --> 00:44.520
We can also start a case and then simply come in here and edit this with our word processor.

00:44.520 --> 00:46.740
And we can see it's got some useful stuff.

00:46.740 --> 00:46.920
Here.

00:46.920 --> 00:53.640
We have case ID document title, subtitle, suspect name prepared by company email, client information.

00:53.640 --> 00:55.260
You can place your logo.

00:56.070 --> 00:58.470
We have different alert levels here.

01:00.420 --> 01:02.940
We have a section for dates.

01:02.940 --> 01:04.170
So important things.

01:04.170 --> 01:05.850
We have the profile page here.

01:05.850 --> 01:13.380
So your targets photo here name email location partners quick facts online monkey ears, related links,

01:13.380 --> 01:16.950
email addresses conclusions, footers here.

01:16.950 --> 01:20.370
And of course we could add or remove stuff as need be.

01:20.370 --> 01:29.010
But again, this is a really extraordinary, uh, template that they offer us, uh, using CSI Linux.

01:29.010 --> 01:30.360
So let me get back in here.

01:30.360 --> 01:35.220
We can click on Linux, start a case, and I can click start a case here.

01:36.000 --> 01:38.850
And we could either open existing case or start a new one.

01:38.850 --> 01:42.570
I'm going to start a new one and enter the case.

01:42.570 --> 01:46.290
To add to this I'm just going to put down test investigator name.

01:46.290 --> 01:48.540
I'm going to put chef case type.

01:48.540 --> 01:49.830
I'm going to put Osint.

01:50.370 --> 01:59.070
So we have Osint source which social media um uh investigation web forensic etc..

01:59.070 --> 02:00.480
You could put whatever you want.

02:00.480 --> 02:02.370
It's really not going to alter things.

02:02.370 --> 02:09.300
We could put the client name, address, city, state, zip, phone number, etc., etc. so I'm going

02:09.300 --> 02:12.570
to click okay and then we can start going through here.

02:12.570 --> 02:19.110
We could do open source Osint, online web investigation, video capture tools, etc. etc..

02:19.380 --> 02:24.240
I'm going to click this and we can once I click Open Source Intelligence, it starts walking us through

02:24.240 --> 02:28.050
these different tools that we can start using to run that investigation.

02:30.600 --> 02:36.480
So we could do things like gather information and our target domain name.

02:36.480 --> 02:41.280
I could do something like, uh, yahoo.com, for example.

02:43.570 --> 02:47.680
And it's going to start harvesting information from that.

02:48.300 --> 02:51.390
So again really useful tool set.

02:51.390 --> 02:52.560
And whether you.

02:53.220 --> 02:58.140
Use these tools go all the way through or not, or just get the template again.

02:58.140 --> 03:00.540
CSI Linux template.

03:00.540 --> 03:02.160
I think it's amazing.

03:02.160 --> 03:07.980
Or even if you want to create your own, it's a good template to take a look at and kind of reference

03:07.980 --> 03:12.270
to figure out how to, you know, ways that you can build your own template.

03:12.270 --> 03:19.170
Don't feel like you need to, um, get stuck in using someone else's template that you're using or software

03:19.170 --> 03:22.470
you have to use your template or that, um.

03:23.220 --> 03:30.030
You're not able to create your own things, always set things up the way that you're going to need to,

03:30.030 --> 03:33.150
that your client is going to want or need things.

03:33.150 --> 03:40.170
So try to be flexible about it, not only in how you create your report, but also in how you handle

03:40.170 --> 03:41.520
your investigations.

03:43.130 --> 03:43.400
Now.

03:43.400 --> 03:44.420
This is going to take a while.

03:44.420 --> 03:51.260
I'm not going to leave it running, but I did want to show you the basic template that comes in CSI

03:51.290 --> 03:57.140
Linux, both to either use it or come up with your own ideas to create your own report template.

03:57.260 --> 03:58.820
Thank you so much for watching.

03:58.820 --> 03:59.870
I'll see you in the next video.
