Having fun while learning about and pivoting into the world of DFIR.
by ogmini
While investigating the ChatGPT Desktop application in yesterday’s post, I came across an Electron App leveraging LevelDB databases. That of course led me to search for tools and research to help me parse and understand the LevelDB files.
I found that a lot of research has been focused on Discord, WhatApp, and older versions of Teams.
There is a lot to dig into here. I haven’t found anytime to explore any of the tools or libraries to see how they work. I was saddened to not find any 010 Editor Binary Templates. Maybe something to play around with… The documentation from CCL Solutions Group should make it pretty straightforward.
tags: LevelDB - exploration