
Final-stage DFIR internship at an independent Belgian forensic audit firm, working across digital forensics and cybersecurity spanning information security, investigations, and integrity. Built PhishTrace, a C#/.NET 10 forensic toolkit for detecting Business Email Compromise in Microsoft 365 environments.
- Conducted logical acquisitions of Android devices using ADB and FTK Imager, applying appropriate forensic strategies across real-world device configurations.
- Performed multi-platform log analysis across iOS plist files, Microsoft 365 Unified Audit Logs, and Apache Tomcat server logs to reconstruct event timelines.
- Carried out penetration testing engagements using both offensive and defensive methodologies to identify and document system vulnerabilities.
- Ran end-to-end digital investigations, processing forensic artefacts from Android and iOS devices with ALEAPP, Autopsy, and FTK Imager.
- Applied knowledge of encryption constraints and physical vs. logical acquisition trade-offs to select the right forensic strategy per case.
- Maintained chain-of-custody standards and flagged network-accessibility risks on exhibit devices throughout all workflows.