Skip to Content
Learn Computer Forensics
book

Learn Computer Forensics

by William Oettinger
April 2020
Beginner content levelBeginner
368 pages
8h 12m
English
Packt Publishing
Content preview from Learn Computer Forensics

Chapter 7: RAM Memory Forensic Analysis

RAM is a vital source of digital evidence that, historically, has been neglected and ignored. As our knowledge of digital evidence grew, examiners began to realize the source of potential digital evidence that existed in RAM. Ultimately, you have an additional multi-gigabyte source of information that needs to be examined and may contain digital artifacts that do not exist in the traditional locations of the system.

In this chapter, we will cover the fundamentals of memory. We will then look at the different sources of memory and learn to capture RAM using RAM capture tools. By the end of this chapter, you will be able to understand the various methods and tools that can process volatile memory.

We'll ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

Hands-On Network Forensics

Hands-On Network Forensics

Nipun Jaswal
Practical Windows Forensics

Practical Windows Forensics

Ayman Shaaban, Konstantin Sapronov
Cyber Security and Digital Forensics

Cyber Security and Digital Forensics

Mangesh M. Ghonge, Sabyasachi Pramanik, Ramchandra Mangrulkar, Dac-Nhuong Le

Publisher Resources

ISBN: 9781838648176Supplemental Content