Książka Practical Linux Forensics Bruce Nikkel

Practical Linux Forensics

Autor: Bruce Nikkel
Język: Angielski
Oprawa: Miękka
Dostępność: Dostępna u dostawcy
Wysyłamy za 3-6 dni
169.32
A resource to help forensic investigators locate, analyze, and understand digital evidence found on...

Informacje o książce

Autor
Język
Angielski
Oprawa
Książka - Miękka
Data wydania
2021
strony
400
EAN
9781718501966
ISBN
171850196X
Enbook ID
36579979
Waga
746
Wymiary
179 x 232 x 324

Pełny opis

A resource to help forensic investigators locate, analyze, and understand digital evidence found on modern Linux systems after a crime, security incident or cyber attack.Practical Linux Forensics dives into the technical details of analyzing postmortem forensic images of Linux systems which have been misused, abused, or the target of malicious attacks. It helps forensic investigators locate and analyze digital evidence found on Linux desktops, servers, and IoT devices. Throughout the book, you learn how to identify digital artifacts which may be of interest to an investigation, draw logical conclusions, and reconstruct past activity from incidents. You ll learn how Linux works from a digital forensics and investigation perspective, and how to interpret evidence from Linux environments. The techniques shown are intended to be independent of the forensic analysis platforms and tools used.Learn how to:   Extract evidence from storage devices and analyze partition tables, volume managers, popular Linux filesystems (Ext4, Btrfs, and Xfs), and encryption   Investigate evidence from Linux logs, including traditional syslog, the systemd journal, kernel and audit logs, and logs from daemons and applications   Reconstruct the Linux startup process, from boot loaders (UEFI and Grub) and kernel initialization, to systemd unit files and targets leading up to a graphical login   Perform analysis of power, temperature, and the physical environment of a Linux machine, and find evidence of sleep, hibernation, shutdowns, reboots, and crashes   Examine installed software, including distro installers, package formats, and package management systems from Debian, Fedora, SUSE, Arch, and other distros   Perform analysis of time and Locale settings, internationalization including language and keyboard settings, and geolocation on a Linux system   Reconstruct user login sessions (shell, X11 and Wayland), desktops (Gnome, KDE, and others) and analyze keyrings, wallets, trash cans, clipboards, thumbnails, recent files and other desktop artifacts   Analyze network configuration, including interfaces, addresses, network managers, DNS, wireless artifacts (Wi-Fi, Bluetooth, WWAN), VPNs (including WireGuard), firewalls, and proxy settings   Identify traces of attached peripheral devices (PCI, USB, Thunderbolt, Bluetooth) including external storage, cameras, and mobiles, and reconstruct printing and scanning activity  

Możesz być zainteresowany

195.81
108.76
166.89
171.95

The Lord of the Rings

John Ronald Reuel Tolkien
1 074.22

Tcp/ip Guide

Charles M Kozierok
280.62

Ethical Hacking

Daniel Graham
142.25

Network Flow Analysis

Michael W. Lucas
192.60
156.57
215.87

Hacking Apis

BALL COREY J
181.30

Practical Doomsday

Michal Zalewski
73.12
142.25

Bare Metal C

Stephen Oualline
155.50

Ghidra Book

Kara Nance
186.07
169.32

C++ Crash Course

Joshua Alfred Lospinoso
169.32
646.55

Hardware Hacking Handbook

Jasper van Woudenberg
142.25

Poc || Gtfo

Manul Laphroaig
126.28

Klienci, którzy kupili tę książkę, kupili również

Refactoring

Martin Fowler
219.28
153.45
142.25
100.09
142.25

Linux

Michael Kofler
185.58

Practical Iot Hacking

Fotios Chantzis
169.32

Penetration Testing

Georgia Weidman
155.50
164.55
194.74
163.97
86.46