> ## Content Index
> Fetch the complete content index at: https://www.thelarsdaniel.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# Examining Insider Threats With LNK Files
- URL: https://www.thelarsdaniel.com/examining-insider-threats-with-lnk-files/
- Published: 2024-11-02T11:37:54.000Z
- Updated: 2026-08-11T13:01:32.000Z
- Description: ▶️ Forensic Artifact Of The Week 🔗 LNK Files🔗 - 📆 Day 5 - Examining Insider Threats 💡 What are LNK Files? LNK files, also known as Windows shortcut files, are more than just links to documents or folders. They can hold critical evidence like file…
- Author: Lars Daniel
- Tags: Video, AI Evidence, #source-youtube, Digital Evidence

▶️ Forensic Artifact Of The Week 🔗 LNK Files🔗 - 📆 Day 5 - Examining Insider Threats

💡 What are LNK Files?

LNK files, also known as Windows shortcut files, are more than just links to documents or folders. They can hold critical evidence like file access dates, device information, and usage patterns that help forensic examiners reconstruct user actions and intent, even when the original files are deleted.

📅 What We’ll Cover: Over the next seven days, each video will explore a unique way LNK files can be used in digital forensics:

1\. Intro to LNK Files as Digital Evidence

2\. Tracking File Access and Usage

[Watch on YouTube](https://www.youtube.com/watch?v=yztAntD1x1M&ref=thelarsdaniel.com)