Zharnyx Logo
ZHARNYX
HomeInternships
Programs
SOC AnalystVAPTCloud SecurityDFIR
About
MissionWhat Makes Us DifferentMeet the FoundersHiring NetworkAcademic Alliances
PricingBlogContact
Student LoginEnroll Now
Zharnyx LogoZHARNYX

Zharnyx empowers students to transform raw curiosity into clear, compelling capabilities — making cybersecurity easier to learn, master, and defend.

X (Twitter)InstagramLinkedInGitHub

Programs

  • Overview
  • Foundation
  • SOC Analyst
  • VAPT
  • Cloud Security
  • DFIR

Resources

  • Blog
  • Certifications
  • Capstone
  • FAQ
  • apply

Company

  • About Us
  • Careers
  • Contact
  • Pricing
  • Partners
  • Colleges

© 2026 Zharnyx. All rights reserved.

Privacy PolicyTerms of Service
PHASE 2 · SPECIALIZATION

Digital Forensics & IR Track

Months 4–6 · Follow the evidence. Master disk forensics, memory analysis, malware reverse engineering, and court-admissible incident response procedures.

M4

Digital Forensics Fundamentals

Weeks 13 - 16

Disk & File System Forensics

FTK Imager, Autopsy, file carving, deleted file recovery

Evidence Acquisition & Chain of Custody

Write-blockers, forensic imaging, legal documentation

Windows Artifact Analysis

Registry hives, event logs, prefetch, LNK files, shellbags

Linux & Mac Forensics

Bash history, auth logs, ext4 journal, macOS plists

M5

Memory Forensics & Malware Analysis

Weeks 17 - 20

Memory Acquisition & Analysis

Volatility3, process trees, network connections, injections

Malware Triage & Static Analysis

PEStudio, YARA rules, string extraction, packer detection

Dynamic Malware Analysis

Cuckoo Sandbox, ANY.RUN, behavioral analysis, C2 detection

Network Forensics

PCAP analysis, Wireshark, timeline reconstruction, NetFlow

M6

Incident Response & Capstone

Weeks 21 - 24

IR Planning & Execution

IR playbooks, containment, eradication, and recovery

Forensic Report Writing

Chain of custody docs, expert witness reports, court formats

Threat Attribution

TTPs mapping, MITRE ATT&CK, group profiling

Live-Fire DFIR Capstone

72-Hour breach investigation on compromised enterprise lab

ZDF

Zharnyx Digital Forensics Certification

This track is engineered to prepare you for the upcoming ZDF (Zharnyx Digital Forensics) certification — a full forensic investigation of a compromised evidence package including memory dumps, disk images, and PCAPs. Currently in active development.

View Certifications

Secure Your Spot

Enroll in the DFIR Track

Apply for CohortAll Tracks