Operating System Forensics is the first book to cover all three critical operating systems for digital forensic investigations in one comprehensive reference.
Users will learn how to conduct successful digital forensic examinations in Windows, Linux, and Mac OS, the methodologies used, key technical concepts, and the tools needed to perform examinations.
Mobile operating systems such as Android, iOS, Windows, and Blackberry are also covered, providing everything practitioners need to conduct a forensic investigation of the most commonly used operating systems, including technical details of how each operating system works and how to find artifacts.
This book walks you through the critical components of investigation and operating system functionality, including file systems, data recovery, memory forensics, system configuration, Internet access, cloud computing, tracking artifacts, executable layouts, malware, and log files. You'll find coverage of key technical topics like Windows Registry, /etc directory, Web browers caches, Mbox, PST files, GPS data, ELF, and more. Hands-on exercises in each chapter drive home the concepts covered in the book. You'll get everything you need for a successful forensics examination, including incident response tactics and legal requirements. Operating System Forensics is the only place you'll find all this covered in one book.
- Covers digital forensic investigations of the three major operating systems, including Windows, Linux, and Mac OS
- Presents the technical details of each operating system, allowing users to find artifacts that might be missed using automated tools
- Hands-on exercises drive home key concepts covered in the book.
- Includes discussions of cloud, Internet, and major mobile operating systems such as Android and iOS
Table of contents
- Title page
- Table of Contents
- Chapter 1: Forensics and Operating Systems
- Chapter 2: File Systems
- Chapter 3: Data and File Recovery
- Chapter 4: Memory Forensics
- Chapter 5: System Configuration
- Chapter 6: Web Browsing
- Chapter 7: Tracking Artifacts
- Chapter 8: Log Files
- Chapter 9: Executable Programs
- Chapter 10: Malware
- Chapter 11: Mobile Operating Systems
- Chapter 12: Newer Technologies
- Chapter 13: Reporting
- Subject Index
- Title: Operating System Forensics
- Release date: November 2015
- Publisher(s): Syngress
- ISBN: 9780128019634
You might also like
40 Algorithms Every Programmer Should Know
Learn algorithms for solving classic computer science problems with this concise guide covering everything from fundamental …
Cyber Forensics: From Data to Digital Evidence
An explanation of the basic principles of data This book explains the basic principles of data …
Windows Registry Forensics, 2nd Edition
Windows Registry Forensics: Advanced Digital Forensic Analysis of the Windows Registry, Second Edition, provides the most …
Building Microservices, 2nd Edition
Distributed systems have become more fine-grained as organizations shift from code-heavy monolithic applications to smaller, self-contained …