August 2008
Intermediate to advanced
592 pages
18h 4m
English
Volatile Data Collection Methodology
Non-Volatile Data Collection from a Live Linux System
Just as there is a time for surgery rather than an autopsy, there is a need for live forensic inspection of a potentially compromised computer rather than an in-depth examination of a forensic duplicate of the disk. Preserving data from a live system is often necessary to ascertain whether it has malicious code installed, ...
Read now
Unlock full access