Forensic Computing

Buch | Hardcover
470 Seiten
2007 | 2nd ed. 2007
Springer London Ltd (Verlag)
978-1-84628-397-0 (ISBN)

Lese- und Medienproben

Forensic Computing - Anthony Sammes, Brian Jenkinson
106,99 inkl. MwSt
The second edition of this successful book shows how the contents of computer systems can be recovered for criminal evidence, even when hidden or subverted. Coverage includes Windows XP/2000 file systems, fast drives, new encryption technologies, and personal organisers.
In the second edition of this very successful book, Tony Sammes and Brian Jenkinson show how information held in computer systems can be recovered and how it may be deliberately hidden or subverted for criminal purposes. "Forensic Computing: A Practitioner's Guide" is illustrated by plenty of case studies and worked examples, and will help practitioners and students gain a clear understanding of:


- how to recover information from computer systems in such a way as to ensure that its integrity cannot be challenged and that it will be accepted as admissible evidence in court the principles involved in password protection and data encryption


- the evaluation procedures used in circumventing these safeguards


- the particular legal issues associated with computer-generated evidence and how to ensure admissibility of such evidence.


This edition is fully expanded and updated with treatment of metadata files, NFTS systems, CHS and LBA addressing, and alternate data streams.

Until 1984, Professor A. J. Sammes was a serving British Army Officer with the rank of Colonel, late of the Royal Corps of Signals. His present appointment is Professor of Computing Science, in the Faculty of Military Science, Technology and Management at the Defense Academy, Cranfield University, Shrivenham. His formal qualifications include a Bachelor of Science in Electrical Engineering, a Master of Philosophy in Computer Science and a Doctor of Philosophy in Computer Science, all degrees having been awarded by the University of London. He is also a Fellow of the British Computer Society and a Chartered Engineer. His department has been more or less solely responsible for training senior police officers in the UK in the art of forensic computing. His testimony as an expert witness has been called in countless cases, of some of great national importance.

Forensic Computing.- Understanding Information.- IT Systems Concepts.- PC Hardware and Inside the Box.- Disk Geometry.- The New Technology File System.- The Treatment of PCs.- The Treatment of Electronic Organisers.- Looking ahead (just a little bit more).- Appendices: Common Character Codes; Some Common File Format Signatures; A Typical Set of POST Codes; Typical BIOS Beep Codes and Error Messages; Disk Partition Table Types; Extended Partitions; Registers and Order Code for the INtel 8086; NFTS Boot Sector and BIOS Parameter Block; MFT Header and Attribute Maps; The Relationship between CHS and LBA Addressing; Alternate Data Streams - a Brief Explanation.

Erscheint lt. Verlag 3.8.2007
Reihe/Serie Practitioner Series
Zusatzinfo 196 Illustrations, black and white; X, 470 p. 196 illus.
Verlagsort England
Sprache englisch
Maße 155 x 235 mm
Themenwelt Mathematik / Informatik Informatik Netzwerke
Informatik Theorie / Studium Kryptologie
Informatik Weitere Themen Hardware
Recht / Steuern Strafrecht Kriminologie
ISBN-10 1-84628-397-3 / 1846283973
ISBN-13 978-1-84628-397-0 / 9781846283970
Zustand Neuware
Haben Sie eine Frage zum Produkt?
Mehr entdecken
aus dem Bereich