000 04283nam a22005295i 4500
001 978-3-030-38954-3
003 DE-He213
005 20240423125204.0
007 cr nn 008mamaa
008 200519s2020 sz | s |||| 0|eng d
020 _a9783030389543
_9978-3-030-38954-3
024 7 _a10.1007/978-3-030-38954-3
_2doi
050 4 _aQA76.9.A25
072 7 _aUR
_2bicssc
072 7 _aUTN
_2bicssc
072 7 _aCOM053000
_2bisacsh
072 7 _aUR
_2thema
072 7 _aUTN
_2thema
082 0 4 _a005.8
_223
100 1 _aKävrestad, Joakim.
_eauthor.
_4aut
_4http://id.loc.gov/vocabulary/relators/aut
245 1 0 _aFundamentals of Digital Forensics
_h[electronic resource] :
_bTheory, Methods, and Real-Life Applications /
_cby Joakim Kävrestad.
250 _a2nd ed. 2020.
264 1 _aCham :
_bSpringer International Publishing :
_bImprint: Springer,
_c2020.
300 _aXIII, 268 p. 143 illus., 27 illus. in color.
_bonline resource.
336 _atext
_btxt
_2rdacontent
337 _acomputer
_bc
_2rdamedia
338 _aonline resource
_bcr
_2rdacarrier
347 _atext file
_bPDF
_2rda
505 0 _aPart I: Theory -- What Is Digital Forensics? -- Ethics and Integrity -- Computer Theory -- Notable Artifacts -- Decryption and Password Enforcing -- Part II: The Forensic Process -- Cybercrime, Cyber-Aided Crime and Digital Evidence -- Incident Response -- Collecting Evidence -- Triage -- Analyzing Data and Writing Reports -- Part III: Get Practical -- Collecting Data -- Indexing and Searching -- Cracking -- Finding Artifacts -- Some Common Questions and Tasks -- FTK Specifics -- Open-Source or Freeware Tools -- Part IV: Memory Forensics -- Memory Analysis -- Memory Analysis Tools -- Memory Analysis in Criminal Investigations -- Malware Analysis -- Appendix A: Solutions -- Appendix B: Useful Scripts -- Appendix C: Sample Report (Template) -- Appendix D: List of Time Zones -- Appendix E: Complete Jitsi Chat Log.
520 _aThis practical and accessible textbook/reference describes the theory and methodology of digital forensic examinations, presenting examples developed in collaboration with police authorities to ensure relevance to real-world practice. The coverage includes discussions on forensic artifacts and constraints, as well as forensic tools used for law enforcement and in the corporate sector. Emphasis is placed on reinforcing sound forensic thinking, and gaining experience in common tasks through hands-on exercises. This enhanced second edition has been expanded with new material on incident response tasks and computer memory analysis. Topics and features: Outlines what computer forensics is, and what it can do, as well as what its limitations are Discusses both the theoretical foundations and the fundamentals of forensic methodology Reviews broad principles that are applicable worldwide Explainshow to find and interpret several important artifacts Describes free and open source software tools, along with the AccessData Forensic Toolkit Features exercises and review questions throughout, with solutions provided in the appendices Includes numerous practical examples, and provides supporting video lectures online This easy-to-follow primer is an essential resource for students of computer forensics, and will also serve as a valuable reference for practitioners seeking instruction on performing forensic examinations. Joakim Kävrestad is a lecturer and researcher at the University of Skövde, Sweden, and an AccessData Certified Examiner. He also serves as a forensic consultant, with several years of experience as a forensic expert with the Swedish police.
650 0 _aData protection.
650 0 _aComputer vision.
650 0 _aCriminology.
650 1 4 _aData and Information Security.
650 2 4 _aComputer Vision.
650 2 4 _aCrime Control and Security.
710 2 _aSpringerLink (Online service)
773 0 _tSpringer Nature eBook
776 0 8 _iPrinted edition:
_z9783030389536
776 0 8 _iPrinted edition:
_z9783030389550
856 4 0 _uhttps://doi.org/10.1007/978-3-030-38954-3
912 _aZDB-2-SCS
912 _aZDB-2-SXCS
942 _cSPRINGER
999 _c175230
_d175230