Digital forensics with open source tools using open source platform tools for performing computer forensics on target systems : Windows, Mac, Linux, UNIX, etc

Digital Forensics with Open Source Tools is the definitive book on investigating and analyzing computer systems and media using open source tools. The book is a technical procedural guide, and explains the use of these tools on Linux and Windows systems as a platform for performing computer forensic...

Descripción completa

Detalles Bibliográficos
Autor principal: Altheide, Cory (-)
Otros Autores: Carvey, Harlan A.
Formato: Libro electrónico
Idioma:Inglés
Publicado: Burlington, MA : Syngress c2011.
Edición:1st edition
Materias:
Ver en Biblioteca Universitat Ramon Llull:https://discovery.url.edu/permalink/34CSUC_URL/1im36ta/alma991009628148306719
Tabla de Contenidos:
  • Front Cover; Digital Forensics with Open Source Tools; Copyright; Table of Contents; About the Authors; Acknowledgments; Introduction; Chapter 1. Digital Forensics with Open Source Tools; Welcome to "Digital Forensics with Open Source Tools"; What Is "Digital Forensics?"; What is "Open Source?"; Benefits of Open Source Tools; Summary; References; Chapter 2. Open Source Examination Platform; Preparing the Examination System; Using Linux as the Host; Using Windows as the Host; Summary; References; Chapter 3. Disk and File System Analysis; Media Analysis Concepts; The Sleuth Kit
  • Partitioning and Disk LayoutsSpecial Containers; Hashing; Carving; Forensic Imaging; Summary; References; Chapter 4. Windows Systems and Artifacts; Introduction; Windows File Systems; Registry; Event Logs; Prefetch Files; Shortcut Files; Windows Executables; Summary; References; Chapter 5. Linux Systems and Artifacts; Introduction; Linux File Systems; Linux Boot Process and Services; Linux System Organization and Artifacts; User Accounts; Home Directories; Logs; Scheduling Tasks; Summary; References; Chapter 6. Mac OS X Systems and Artifacts; Introduction; OS X File System Artifacts
  • OS X System ArtifactsUser Artifacts; Summary; References; Chapter 7. Internet Artifacts; Introduction; Browser Artifacts; Mail Artifacts; Summary; References; Chapter 8. File Analysis; File Analysis Concepts; Images; Audio; Video; Archives; Documents; Summary; References; Chapter 9. Automating Analysis and Extending Capabilities; Introduction; Graphical Investigation Environments; Automating Artifact Extraction; Timelines; Summary; References; Appendix A. Free, Non-open Tools of Note; Introduction; Chapter 3: Disk and File System Analysis; Chapter 4: Windows Systems and Artifacts
  • Chapter 7: Internet ArtifactsChapter 8: File Analysis; Chapter 9: Automating Analysis and Extending Capabilities; Validation and Testing Resources; References; Index