The Basics of Digital Forensics : The Primer for Getting Started in Digital Forensics, 2/e (Paperback)

John Sammons

  • 出版商: Syngress Media
  • 出版日期: 2014-12-15
  • 售價: $1,225
  • 貴賓價: 9.5$1,164
  • 語言: 英文
  • 頁數: 200
  • 裝訂: Paperback
  • ISBN: 0128016353
  • ISBN-13: 9780128016350
  • 相關分類: 資訊安全Computer-networks
  • 立即出貨 (庫存 < 3)

買這商品的人也買了...

商品描述

The Basics of Digital Forensics provides a foundation for people new to the digital forensics field. This book teaches you how to conduct examinations by discussing what digital forensics is, the methodologies used, key tactical concepts, and the tools needed to perform examinations. Details on digital forensics for computers, networks, cell phones, GPS, the cloud and the Internet are discussed. Also, learn how to collect evidence, document the scene, and how deleted data can be recovered.

The new Second Edition of this book provides you with completely up-to-date real-world examples and all the key technologies used in digital forensics, as well as new coverage of network intrusion response, how hard drives are organized, and electronic discovery. You'll also learn how to incorporate quality assurance into an investigation, how to prioritize evidence items to examine (triage), case processing, and what goes into making an expert witness.

The Second Edition also features expanded resources and references, including online resources that keep you current, sample legal documents, and suggested further reading.

  • Learn what Digital Forensics entails
  • Build a toolkit and prepare an investigative plan
  • Understand the common artifacts to look for in an exam
  • Second Edition features all-new coverage of hard drives, triage, network intrusion response, and electronic discovery; as well as updated case studies, expert interviews, and expanded resources and references

商品描述(中文翻譯)

《數位鑑識基礎》為初入數位鑑識領域的人提供了一個基礎。本書教導讀者如何進行調查,包括數位鑑識的定義、使用的方法論、關鍵戰術概念以及執行調查所需的工具。書中討論了有關電腦、網絡、手機、GPS、雲端和互聯網的數位鑑識詳情。此外,還學習如何收集證據、記錄現場,以及如何恢復已刪除的數據。

本書的第二版提供了最新的現實世界案例和數位鑑識中使用的所有關鍵技術,還新增了網絡入侵應對、硬碟組織方式以及電子發現的相關內容。您還將學習如何將質量保證納入調查中,如何優先處理證據項目(分流),案件處理以及成為專家證人所需的要素。

第二版還提供了擴展的資源和參考資料,包括讓您保持最新的線上資源、範例法律文件和建議進一步閱讀的資料。

本書的特點還包括全新的硬碟、分流、網絡入侵應對和電子發現相關內容;以及更新的案例研究、專家訪談和擴展的資源和參考資料。

本書的內容包括:
- 了解數位鑑識的內容
- 構建工具包並制定調查計劃
- 理解調查中要尋找的常見證據
- 第二版新增了硬碟、分流、網絡入侵應對和電子發現的全新內容;還包括更新的案例研究、專家訪談以及擴展的資源和參考資料。