官术网_书友最值得收藏!

Preface

Regardless of your level of experience in the field of information security in general, Practical Windows Forensics will fully introduce you to digital forensics. It will provide you with the knowledge needed to assemble different types of evidence properly, and walk you through the various stages of the analysis process.

We start by discussing the principles of the digital forensics process and move on to learning about the approaches that are used to conduct analysis. We will then study various tools to perform live analysis, and go through different techniques to analyze volatile and nonvolatile data. This will be followed by recovering data from hard drives and learning how to use multiple tools to perform registry and system log analyses.

Next, you will be taught how to analyze browsers and e-mails as they are crucial aspects of investigations. We will then go on to extract data from a computer's memory and investigate network traffic, which is another important checkpoint. Lastly, you will learn a few ways in which you can present data, because every investigator needs a work station where they can analyze forensic data.

主站蜘蛛池模板: 晋中市| 保定市| 公主岭市| 德令哈市| 阿尔山市| 乌恰县| 松阳县| 正镶白旗| 永福县| 望江县| 贵德县| 盈江县| 永吉县| 开封市| 高密市| 抚宁县| 万盛区| 襄汾县| 呼和浩特市| 宜兴市| 张家界市| 山西省| 德保县| 民勤县| 峨山| 江西省| 丰顺县| 浮山县| 濮阳县| 南昌县| 茌平县| 鄯善县| 佳木斯市| 桐庐县| 紫阳县| 双城市| 宁津县| 定远县| 公主岭市| 安丘市| 时尚|