In a CTF context, "Forensics" challenges can include file format analysis, steganography, memory dump analysis, or network packet capture analysis.

Pico CTF has a large area dedicated to forensics in particular.

root-me is  a large security platform, with a extensive section dedicated to forensic challenges.

