Concept Explorer
Pick a module on the left to study objectives and concepts.
Flashcards
flip & review
Practice Quiz
exam-style questions
My Progress
streak · mastery · scores
From the Blog
View all CHFI articles →Loading articles…
Free EC-Council CHFI v10 Study Hub
Everything you need to pass the EC-Council CHFI v10 exam — all in one place, completely free. Study all 15 forensics modules with practice flashcards, exam-style questions, objective-aligned study notes, and video lessons. Track your progress, identify weak spots, and study smarter.
The 15 Exam Modules
- Module 1 — Computer Forensics in Today's World — Fundamentals, legal framework, chain of custody
- Module 2 — Investigation Process — Phases, first response, scene management
- Module 3 — Hard Disks and File Systems — Disk structures, NTFS, ext4, APFS
- Module 4 — Data Acquisition and Duplication — Imaging, write blockers, eDiscovery
- Module 5 — Defeating Anti-Forensics — Data hiding, encryption, timestomping
- Module 6 — Windows Forensics — Memory, registry, event logs, browser artifacts
- Module 7 — Linux and Mac Forensics — Linux paths, macOS artifacts, APFS
- Module 8 — Network Forensics — PCAP, NetFlow, IDS logs, wireless
- Module 9 — Malware Forensics — Static/dynamic analysis, ransomware
- Module 10 — Investigating Web Attacks — Server logs, SQLi, XSS, web shells
- Module 11 — Dark Web Forensics — Tor architecture, cryptocurrency tracing
- Module 12 — Cloud Forensics — AWS CloudTrail, Azure, GCP audit logs
- Module 13 — Email and Social Media Forensics — Headers, DKIM, social artifacts
- Module 14 — Mobile Forensics — Android ADB, iOS backups, Cellebrite
- Module 15 — IoT Forensics — MQTT, UART/JTAG, firmware, ICS/SCADA
Built by it-learn.io — a free IT certification study platform. Also check out ir.it-learn.io for ECIH v3 Incident Response study materials.