e-DiFTA 2027 · Prague · 22–26 February 2027

8 hands-on digital forensics courses

AI, mobile, memory, OSINT, Windows 11, drone, database and host-based network forensics. Each course runs for the full week; choose one per participant.

€2,500 per participantFirst paid – first confirmed5 days · 08:00–17:00Official certificateNH Prague City

All courses

Filter by course provider and open a course for the full programme, prerequisites and instructors.

  • AI

    INsig2

    AI-Powered Digital Forensics

    Learn to use AI and large language models as investigative tools – and to recognise how criminals misuse them – with hands-on work on LLMs, RAG systems, AI agents and the EU AI Act.

    Details →Register
  • MOBILE

    INsig2Intermediate

    Mobile Forensics Deep Dive

    Hands-on intermediate course in advanced Android and iOS analysis: OS internals, encryption, manual SQLite and plist parsing, cloud artefacts and validating what your tools report.

    Details →Register
  • RAM

    INsig2

    Mastering RAM and Volatile Data

    Acquire and analyse RAM from live machines: live forensics and incident response, memory imaging, Windows artefacts from memory, password recovery and in-depth work with the Volatility framework.

    Details →Register
  • OSINT

    INsig2

    Applied OSINT for Digital Investigators

    Practical open-source intelligence for investigators: a secure OSINT environment, advanced search, SOCMINT, breach data, metadata, image verification, geolocation, the dark web and evidential reporting.

    Details →Register
  • ADFA

    Spyder ForensicsAdvanced

    Advanced Drone Forensic Analysis (ADFA)

    A 36-hour advanced course on extracting and analysing data from drones (UAS), their controllers and mobile apps – DJI, ArduPilot, PX4 and FPV – using non-destructive, court-ready workflows.

    Details →Register
  • AADF

    Spyder ForensicsAdvanced

    Advanced Applied Database Forensics (AADF)

    Deep-dive database forensics: SQLite internals and deleted-record recovery (freeblocks, freelists, WAL and journals), SQL querying, Chromium SNSS, LevelDB, Realm and binary plists across Windows, Mac, Android and iOS.

    Details →Register
  • HBNF

    Spyder ForensicsAdvanced

    Host-Based Network Forensics (HBNF)

    Investigate network intrusions and ransomware using host-based evidence: traffic artefacts, live triage, memory analysis, Windows event logs and Registry persistence, and attack timelines.

    Details →Register

FAQ

About the courses

All questions →

Can I register for more than one course?

No. All eight courses run in parallel from Monday to Friday, so each participant attends one course for the full week.

Who delivers the courses?

Four courses are delivered by INsig2 (AI-Powered Digital Forensics, Mobile Forensics Deep Dive, Mastering RAM and Volatile Data, Applied OSINT for Digital Investigators) and four by Spyder Forensics (AWFE, ADFA, AADF and HBNF). The event is organised together with WINDIFE.

Do participants receive a certificate?

Yes. Every participant who passes the course receives an official e-DiFTA certificate confirming successful completion of the class and recognising the training hours completed.

Mastering RAM and Volatile Data ends with a knowledge evaluation based on a real case scenario, and Advanced Drone Forensic Analysis (ADFA) ends with a student knowledge assessment.

What is included in the fee?

Five days of hands-on training, an official certificate of successful completion recognising the training hours, a buffet lunch and morning and afternoon coffee breaks every day. Spyder Forensics courses also include a student manual and lab exercises.

Seats are limited in every course

Seats are allocated on a “first paid – first confirmed” basis. Register for one course per participant and pay the invoice by bank transfer by 25 December 2026.