Altheide, Cory.

Digital forensics with open source tools / Cory Altheide, and Harlan Carvey ; technical editor Ray Davidson. - Burlington, MA : Syngress, c2011. - xvii, 264 p. : ill. ; 24 cm.

CONTENTS

CHAPTER 1: DIGITAL FORENSICS WITH OPEN SOURCE TOOLS
Welcome to ''digital forensics with open source tools''
what is digital forensics
what is open source
benefits of open source tools
e.tc

CHAPTER 2: OPEN SOURCE EXAMINATION PLATFORM
preparing the examination system
using Linux as the host
using windows as the host
e.tc

CHAPTER 3: DISK AND FILE SYSTEM ANALYSIS
media analysis concepts
the sleuth kit
partitioning and disk layouts
special containers
e.tc

CHAPTER 4: WINDOWS SYSTEMS AND ARTIFACTS
introduction
windows file systems
registry
event logs
e.tc

CHAPTER 5: LINUX SYSTEMS AND ARTIFACTS
Introduction
Linux file systems
Linux boot process and services
e.tc

CHAPTER 6: MAC OS X SYSTEMS AND ARTIFACTS
Introduction
OS X File system artifacts
OS X system artifacts
user artifacts
e.tc

CHAPTER 7: INTERNET ARTIFACTS
introduction
browser artifacts
mail artifacts
e.tc

CHAPTER 8: FILE ANALYSIS
File analysis concepts
Images
Audio
Video
e.tc

CHAPTER 9: AUTOMATING ANALYSIS AND EXTENDING CAPABILITIES
Introduction
Graphical investigation environments
automating artifact extraction
e.tc



Includes bibliographical references p. 255 and index p. 257-264

9781597495868


Computer crimes--Investigation.
Digital forensic science.
Open source software.
Forensic sciences.

363.25968 / ALT