Learn Computer Forensics: A beginner’s guide to searching,analyzing,and securing digital evidence


Learn Computer Forensics: A beginner’s guide to searching,analyzing,and securing digital evidence
by: William Oettinger
Print Length 页数: 368 pages
Publisher finelybook 出版社: Packt Publishing (30 April 2020)
Language 语言: English
ISBN-10: 1838648178
ISBN-13: 9781838648176


Book Description
By finelybook

Get up and running with collecting evidence using forensics best practices to present your findings in judicial or administrative proceedings
A computer forensics investigator must possess a variety of skills,including the ability to answer legal questions,gather and document evidence,and prepare for an investigation. This book will help you get up and running with using digital forensic tools and techniques to investigate cybercrimes successfully.
Starting with an overview of forensics and all the open source and commercial tools needed to get the job done,you’ll learn core forensic practices for searching databases and analyzing data over networks,personal devices,and web applications. You’ll then learn how to acquire valuable information from different places,such as filesystems,e-mails,browser histories,and search queries,and capture data remotely. As you advance,this book will guide you through implementing forensic techniques on multiple platforms,such as Windows,Linux,and macOS,to demonstrate how to recover valuable information as evidence. Finally,you’ll get to grips with presenting your findings efficiently in judicial or administrative proceedings.
By the end of this book,you’ll have developed a clear understanding of how to acquire,analyze,and present digital evidence like a proficient computer forensics investigator.
What you will learn
Understand investigative processes,the rules of evidence,and ethical guidelines
Recognize and document different types of computer hardware
Understand the boot process covering BIOS,UEFI,and the boot sequence
Validate forensic hardware and software
Discover the locations of common Windows artifacts
Document your findings using technically correct terminology

Table of Contents
Preface
Section 1:
Acquiring Evidence
Chapter 1: Types of
Computer-Based Investigations
Chapter 2: The Forensic Analysis Process
Chapter 3: Acquisition of Evidence
Chapter 4: Computer Systems
Section 2:
Investigation
Chapter 5: Computer Investigation Process
Chapter 6: Windows Artifact Analysis
Chapter 7: RAM Memory Forensic Analysis
Chapter 8: Email Forensics-Investigation Techniques
Chapter 9: Internet Artifacts
Section 3:
Reporting
Chapter 10: Report Writing
Chapter 11: Expert Witness Ethics
Assessments
Index

相关文件下载地址

打赏
未经允许不得转载:finelybook » Learn Computer Forensics: A beginner’s guide to searching,analyzing,and securing digital evidence

评论 抢沙发

觉得文章有用就打赏一下

您的打赏,我们将继续给力更多优质内容

支付宝扫一扫

微信扫一扫