Handbook of Computer Crime Investigation: Forensic Tools and TechnologyEoghan Casey Elsevier, 2001. gada 22. okt. - 448 lappuses Following on the success of his introductory text, Digital Evidence and Computer Crime, Eoghan Casey brings together a few top experts to create the first detailed guide for professionals who are already familiar with digital evidence. The Handbook of Computer Crime Investigation helps readers master the forensic analysis of computer systems with a three-part approach covering tools, technology, and case studies. The Tools section provides the details on leading software programs, with each chapter written by that product's creator. The section ends with an objective comparison of the strengths and limitations of each tool. The main Technology section provides the technical "how to" information for collecting and analyzing digital evidence in common situations, starting with computers, moving on to networks, and culminating with embedded systems. The Case Examples section gives readers a sense of the technical, legal, and practical challenges that arise in real computer investigations.
|
No grāmatas satura
1.5. rezultāts no 28.
... Linux. Additionally, applications such as The Coroner's Toolkit (TCT) are being developed to formalize and automate the collection of volatile information from live computer systems.4 Once volatile information has been collected, it is ...
... Linux operating system as another example. When instructed to search for child pornography on a computer running Linux, an inexperienced examiner might search at the file system (logical) level for files with a GIF or JPG extension ...
... Linux (EXT2), and Unix (Sun Solaris, Open BSD and other flavors). CD and DVD-ROM file systems are also supported. EnCase features a multitude of analysis views and integrated tools within one application far more than can be addressed ...
... (Linux).3 The EnCase restore process is unique. 2 It is not sound practice to boot the subject's original drive because this will change information of potential evidentiary value. 3 This is necessary because Windows 98 cannot write to an ...
Forensic Tools and Technology Eoghan Casey. image is EXT2 (Linux).3 The EnCase restore process is unique in that the function takes place in a Windows environment for increased versatility. Within the EnCase GUI, the examiner can easily ...
Saturs
1 | |
17 | |
53 | |
TECHNOLOGY | 133 |
CASE EXAMPLES | 361 |
APPENDIX 1 | 415 |
APPENDIX 2 | 419 |
APPENDIX 3 | 425 |
APPENDIX 4 | 433 |
APPENDIX 5 | 435 |
AUTHOR INDEX | 437 |
SUBJECT INDEX | 439 |
Citi izdevumi - Skatīt visu
Handbook of Computer Crime Investigation: Forensic Tools and Technology Eoghan Casey Priekšskatījums nav pieejams - 2002 |
Bieži izmantoti vārdi un frāzes
Populāri fragmenti
Atsauces uz šo grāmatu
Criminal Profiling: An Introduction to Behavioral Evidence Analysis Brent E. Turvey Ierobežota priekšskatīšana - 2002 |