Skip to Content
Learn Computer Forensics
book

Learn Computer Forensics

by William Oettinger
April 2020
Beginner content levelBeginner
368 pages
8h 12m
English
Packt Publishing
Content preview from Learn Computer Forensics

Chapter 3: Acquisition of Evidence

Digital evidence is one of the most volatile pieces of evidence an investigator can handle, and the smallest error or mishandling on the investigator's part can severely impact the investigation. You may lose the data forever, or you might lose pieces of it. Unintentional manipulation of data can call your ability to investigate into question, as well as the integrity of the data in the investigation. This chapter will address how to minimize or eliminate any of these issues by using a tool validation process to create an error-free and validated forensic image.

We will cover the following topics in this chapter:

  • Exploring evidence
  • Understanding the forensic examination environment
  • Tool validation
  • Creating ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

Hands-On Network Forensics

Hands-On Network Forensics

Nipun Jaswal
Practical Windows Forensics

Practical Windows Forensics

Ayman Shaaban, Konstantin Sapronov
Cyber Security and Digital Forensics

Cyber Security and Digital Forensics

Mangesh M. Ghonge, Sabyasachi Pramanik, Ramchandra Mangrulkar, Dac-Nhuong Le

Publisher Resources

ISBN: 9781838648176Supplemental Content