Malware Analysis
We take malware apart in an isolated environment and deliver concrete detection rules for your systems rather than a lab report.
ViewDigital Forensics
Cyber criminals leave behind digital fingerprints - neonotu makes them visible. Our digital forensics experts use state-of-the-art technologies to decode even the smallest data traces and meticulously reconstruct cyber attacks.
We take malware apart in an isolated environment and deliver concrete detection rules for your systems rather than a lab report.
ViewNetwork traffic reveals what has long been deleted on endpoints. We reconstruct entry, lateral movement and exfiltration from captu…
ViewThere is no disk to image in the cloud. We secure logs, configuration states and identity data before the provider retention window…
ViewCompany phones often hold more business secrets than any computer. We secure and examine them to an evidentiary standard — includin…
ViewTools change, habits persist. We analyse how an attacker operates and derive where they will start next time.
ViewThe starting point
Like digital detectives, we meticulously analyze every byte. Whether malware infections, data leaks or deleted information - we bring to light what others leave hidden. Our forensic team not only secures valuable evidence, but also provides crucial insights to strengthen your cyber security.
neonotu's holistic approach combines reactive reconnaissance with preventive protection. Find out how our forensic services minimize your cyber risks and maximize your ability to respond in an emergency. What comes out of it is not a lab report but a list of detection rules that afterwards sits in your monitoring.

Making invisible traces visible - neonotu's digital forensics
The method
neonotu is at the forefront of digital forensics. Our highly specialized services combine cutting-edge technologies with years of expertise to solve even the most complex digital incidents. We understand that every case is unique and requires customized forensic solutions.
Our team of experienced forensic experts uses advanced analytical tools and innovative methods to secure, analyze and interpret digital evidence. From investigating sophisticated malware to reconstructing deleted data in cloud environments, we deliver accurate, forensic results.
With neonotu as your forensic partner, you not only gain insights into past incidents, but also strengthen your future cyber security. Our findings flow directly into the improvement of your security measures to prevent similar incidents in the future.
Discover our comprehensive portfolio of forensic services.
What we do
Detailed investigation of malware to identify its origin, mode of operation and potential impact.
We take the sample apart in an isolated environment: static analysis of the binary, dynamic observation of its runtime behaviour, and comparison of the indicators against our threat database. What comes out at the end is not a lab report but a list of concrete detection rules for your systems.
In environments running Talion the same sample becomes the template for the automatic response: recognised variants are isolated before an analyst ever sees them. Strider then correlates the indicators across the whole network so a second infection does not go unnoticed. If the analysis leads to a live incident, Instant Response takes over.
Advanced techniques for reconstructing deleted or damaged data from various storage media.
Specialized investigations of smartphones and tablets to extract and analyze critical data.
Forensic analysis in complex cloud environments to secure evidence and resolve security incidents.
Rapid and thorough forensic investigations as part of the response to recent security incidents.
Professional support in the identification, collection and processing of electronic evidence for legal purposes.
Specialized forensic investigations of IoT devices and networks to uncover security vulnerabilities and attacks.
Innovative analysis of digital traces using artificial intelligence to create detailed offender profiles and predict future attack patterns. This technology provides deeper insights into the motivations and methods of cyber criminals.
The basis for this is NeoI, our own analysis engine. It compares observed behaviour against what is normal in your environment rather than only looking for known signatures — which means an attacker using nothing but legitimate tools also stands out. The results flow back into Strider and sharpen the correlation there.
Use of AR technology for three-dimensional visualization of complex digital crime scenes. Enables investigators and decision makers to intuitively and immersively explore forensic data for better understanding and more effective decision making.
The value lies less in the technology than in making things understood: a management board, a supervisory board or a court has to be able to follow how an attacker proceeded. A spatial rendering makes attack paths visible that disappear in a table. For evidence under ISO 27001 or NIS2 we supply it alongside the classic documentation — see ISMS Implementation.
Future-proof forensic methods that are resistant even to quantum computing attacks. Ensures the long-term integrity and usability of digital evidence in a post-quantum era.
and more...
Contact
Talk to us before somebody else does. The first conversation is free and we reply the same business day.