Having fun while learning about and pivoting into the world of DFIR.
by ogmini
I noticed during BelkaCTF 7 that ALEAPP didn’t extract all the emails as Belkasoft. This of course led me down the path of seeing how I could go about writing one and contributing it to the project. I actually wrote about this in yesterday’s post and how to recover the information manually.
Spent some time today looking at other plugins to understand how they work and writing this plugin. I’ll probably submit the PR later today or tomorrow.