Views:

Learn about the available methods to collect evidence in Forensics.

Method
Description
Automatic evidence collection via Collect Evidence task
Automatically collect evidence from endpoints in your environment by running the Collect Evidence task.
Automatic evidence collection via playbooks
Automatically collect evidence from endpoints in your environment by creating Incident Response Evidence Collection security playbooks.
Manual evidence collection
Collect evidence from endpoints without an internet connection to support threat investigation and incident response by using the Trend Micro Incident Response Toolkit.