نام کتاب
Practical Windows Forensics

Leverage the power of digital forensics for Windows systems

Ayman Shaaban, Konstantin Sapronov

Paperback314 Pages
PublisherPackt
Edition1
LanguageEnglish
Year2016
ISBN9781783554096
919
A2242
انتخاب نوع چاپ:
جلد سخت
536,000ت
0
جلد نرم
476,000ت
0
طلق پاپکو و فنر
486,000ت
0
مجموع:
0تومان
کیفیت متن:اورجینال انتشارات
قطع:B5
رنگ صفحات:رنگی با کادر / تصویر
پشتیبانی در روزهای تعطیل!
ارسال به سراسر کشور

Windows#

توضیحات

Leverage the power of digital forensics for Windows systems


Key Features

  • Build your own lab environment to analyze forensic data and practice techniques
  • Develop the key skills needed for performing forensic analysis on Windows-based systems using digital artifacts
  • Become proficient at analyzing forensic data and upgrade your existing knowledge with open source and Linux-based tools


Book Description

Over the past few years, the cybercrime wave has risen rapidly, with major attacks on government, military, financial, and media sectors. Tracking all these attacks and crimes requires an in-depth understanding of how operating systems work, how to extract data from digital evidence, and how to best use of digital forensic tools and techniques. This book will provide you with a detailed introduction to digital forensics, giving you the knowledge you need to assemble different types of evidence effectively, and walking you through the various stages of the analysis process.

This book starts by discussing the principles of the digital forensics process, and moves on to show you the approaches used to conduct analysis. You'll then study various tools to perform live analysis, and cover different techniques to analyze volatile and nonvolatile data. After this, you'll get to grips with data recovery, along with understanding FS analysis and performing registry analysis. Toward the concluding chapters, you'll get hands-on with building a forensic analyst environment, before working through interesting exercises to help reinforce your knowledge.

By the end of this book, you'll have developed the skills you need for performing forensic analysis on Windows-based systems.


What you will learn

  • Perform live analysis on victim or suspect Windows systems locally or remotely
  • Understand the different natures and acquisition techniques of volatile and nonvolatile data
  • Create a timeline of all the system actions to restore the history of an incident
  • Recover and analyze data from the file allocation table (FAT) and new technology file system (NTFS)
  • Make use of various tools to perform registry analysis
  • Track a system user's browser and e-mail activities to prove or refute hypotheses
  • Discover how to dump and analyze computer memory


Who this book is for

This book is for forensic analysts and professionals who want to develop skills in digital forensic analysis for the Windows platform. Prior experience of information security and forensic analysis will be useful.


Table of Contents

  1. The Foundations and Principles of Digital Forensics
  2. Incident Response and Live Analysis
  3. Volatile Data Collection
  4. Nonvolatile Data Acquisition
  5. Timeline
  6. Filesystem Analysis and Data Recovery
  7. Registry Analysis
  8. Event Log Analysis
  9. Windows Files
  10. Browser and E-mail Investigation
  11. Memory Forensics
  12. Network Forensics


About the Author

Ayman Shaaban (@aymanshaaban) is a digital forensics specialist with about 8 years of experience in the field. He worked in the Egyptian National CERT as a digital forensics engineer for almost 5 years before joining Kaspersky Lab as a security researcher. Throughout the course of his career, Ayman has provided analysis for cases with national and international scope, and delivered training on digital forensics for different high profile entities. He is a certified GSEC, GCIH, GCFA, and CFCE. He also has a BSc in Communication and Electronics, and is currently working on his Master's degree in Information Security. You can find him on LinkedIn. Konstantin Sapronov joined Kaspersky Lab in 2000. He has been the Deputy Head of the Global Emergency Response Team since August 2011. He previously worked as a group manager with Virus Lab China, and has been responsible for establishing and developing the Virus Lab at Kaspersky Lab's office in China. Before this, Konstantin worked as a virus analyst and was the head of the Non-Intel Platform Group in the Virus Lab at Kaspersky Lab's HQ (Moscow), where he specialized in reverse engineering and in the analysis of malware, exploits, and vulnerabilities. He has authored several analytical articles on malware for UNIX and other information security topics.

دیدگاه خود را بنویسید
نظرات کاربران (0 دیدگاه)
نظری وجود ندارد.
کتاب های مشابه
هک و امنیت
790
Creating an Information Security Program from Scratch
353,000 تومان
هک و امنیت
1,819
Certified Ethical Hacker (CEH) v11 312-50 Exam Guide
924,000 تومان
هک و امنیت
886
Adversarial Tradecraft in Cybersecurity
377,000 تومان
هک و امنیت
5,981
Bug Bounty Bootcamp
548,000 تومان
هک و امنیت
1,206
Practical IoT Hacking
644,000 تومان
هک و امنیت
1,825
CEH v12 Certified Ethical Hacker Study Guide
1,025,000 تومان
هک و امنیت
366
Hadoop Security
470,000 تومان
Machine Learning
328
Introduction to Machine Learning with Security
784,000 تومان
هک و امنیت
1,499
Black Hat GraphQL
444,000 تومان
هک و امنیت
828
Keycloak – Identity and Access Management for Modern Applications
481,000 تومان
قیمت
منصفانه
ارسال به
سراسر کشور
تضمین
کیفیت
پشتیبانی در
روزهای تعطیل
خرید امن
و آسان
آرشیو بزرگ
کتاب‌های تخصصی
هـر روز با بهتــرین و جــدیــدتـرین
کتاب های روز دنیا با ما همراه باشید
آدرس
پشتیبانی
مدیریت
ساعات پاسخگویی
درباره اسکای بوک
دسترسی های سریع
  • راهنمای خرید
  • راهنمای ارسال
  • سوالات متداول
  • قوانین و مقررات
  • وبلاگ
  • درباره ما
چاپ دیجیتال اسکای بوک. 2024-2022 ©