Fundamentals of Digital Forensics - Joakim Kävrestad

Fundamentals of Digital Forensics

Theory, Methods, and Real-Life Applications
Buch | Softcover
XII, 230 Seiten
2018 | 1st ed. 2018
Springer International Publishing (Verlag)
978-3-319-96318-1 (ISBN)
40,65 inkl. MwSt
zur Neuauflage
  • Titel erscheint in neuer Auflage
  • Artikel merken
Zu diesem Artikel existiert eine Nachauflage
This hands-on textbook provides an accessible introduction to the fundamentals of digital forensics. The text contains thorough coverage of the theoretical foundations, explaining what computer forensics is, what it can do, and also what it can't. A particular focus is presented on establishing sound forensic thinking and methodology, supported by practical guidance on performing typical tasks and using common forensic tools. Emphasis is also placed on universal principles, as opposed to content unique to specific legislation in individual countries.Topics and features: introduces the fundamental concepts in digital forensics, and the steps involved in a forensic examination in a digital environment; discusses the nature of what cybercrime is, and how digital evidence can be of use during criminal investigations into such crimes; offers a practical overview of common practices for cracking encrypted data; reviews key artifacts that have proven to be important in several cases, highlighting where to find these and how to correctly interpret them; presents a survey of various different search techniques, and several forensic tools that are available for free; examines the functions of AccessData Forensic Toolkit and Registry Viewer; proposes methods for analyzing applications, timelining, determining the identity of the computer user, and deducing if the computer was remote controlled; describes the central concepts relating to computer memory management, and how to perform different types of memory analysis using the open source tool Volatility; provides review questions and practice tasks at the end of most chapters, and supporting video lectures on YouTube.This easy-to-follow primer is an essential resource for students of computer forensics, and will also serve as a valuable reference for practitioners seeking instruction on performing forensic examinations in law enforcement or in the private sector.

Joakim Kävrestad is a Lecturer in informatics at the University of Skövde, Sweden, with several years of experience as a forensic expert with the Swedish police.

Part I: TheoryWhat is Digital Forensics?Cybercrime, Cyber-Aided Crime and Digital EvidenceComputer TheoryNotable ArtifactsDecryption and Password EnforcingCollecting EvidenceAnalyzing Data and Writing ReportsPart II: Put It to PracticeCollecting DataIndexing and SearchingCrackingFinding ArtifactsSome Common QuestionsFTK SpecificsOpen Source or Freeware ToolsPart III: Memory ForensicsMemory ManagementVolatilityMemory Analysis in Criminal InvestigationsMalware AnalysisPart IV: AppendicesAppendix A - SolutionsAppendix B - Useful ScriptsAppendix C - Sample Report (Template)Appendix D - List of Time ZonesAppendix E - complete Jitsi Chat Log

Erscheinungsdatum
Zusatzinfo XII, 230 p. 124 illus., 6 illus. in color.
Verlagsort Cham
Sprache englisch
Maße 155 x 235 mm
Gewicht 375 g
Themenwelt Informatik Netzwerke Sicherheit / Firewall
Schlagworte AccessData • Computer Examination • Computer Forensic Methods • Computer forensics • criminal investigation • digital forensics • Forensics • Imaging • live forensics • password cracking
ISBN-10 3-319-96318-X / 331996318X
ISBN-13 978-3-319-96318-1 / 9783319963181
Zustand Neuware
Haben Sie eine Frage zum Produkt?
Mehr entdecken
aus dem Bereich
Konzepte – Verfahren – Protokolle

von Claudia Eckert

Buch | Hardcover (2023)
De Gruyter Oldenbourg (Verlag)
84,95