Network Forensics
暫譯: 網路取證

Ric Messier

  • 出版商: Wiley
  • 出版日期: 2017-08-07
  • 定價: $1,980
  • 售價: 9.5$1,881
  • 語言: 英文
  • 頁數: 360
  • 裝訂: Paperback
  • ISBN: 1119328284
  • ISBN-13: 9781119328285
  • 相關分類: Computer-networks
  • 立即出貨 (庫存 < 3)

買這商品的人也買了...

相關主題

商品描述

Intensively hands-on training for real-world network forensics

Network Forensics provides a uniquely practical guide for IT and law enforcement professionals seeking a deeper understanding of cybersecurity. This book is hands-on all the way—by dissecting packets, you gain fundamental knowledge that only comes from experience. Real packet captures and log files demonstrate network traffic investigation, and the learn-by-doing approach relates the essential skills that traditional forensics investigators may not have. From network packet analysis to host artifacts to log analysis and beyond, this book emphasizes the critical techniques that bring evidence to light.

Network forensics is a growing field, and is becoming increasingly central to law enforcement as cybercrime becomes more and more sophisticated. This book provides an unprecedented level of hands-on training to give investigators the skills they need.

  • Investigate packet captures to examine network communications
  • Locate host-based artifacts and analyze network logs
  • Understand intrusion detection systems—and let them do the legwork
  • Have the right architecture and systems in place ahead of an incident

Network data is always changing, and is never saved in one place; an investigator must understand how to examine data over time, which involves specialized skills that go above and beyond memory, mobile, or data forensics. Whether you're preparing for a security certification or just seeking deeper training for a law enforcement or IT role, you can only learn so much from concept; to thoroughly understand something, you need to do it. Network Forensics provides intensive hands-on practice with direct translation to real-world application.

商品描述(中文翻譯)

針對真實世界網路取證的密集實作訓練

網路取證 為尋求深入了解網路安全的 IT 和執法專業人員提供了一本獨特的實用指南。本書全程以實作為主——透過解析封包,您將獲得只有透過經驗才能獲得的基本知識。真實的封包擷取和日誌檔案展示了網路流量調查,而「邊做邊學」的方法則關聯了傳統取證調查員可能不具備的基本技能。從網路封包分析到主機工件,再到日誌分析及其他,本書強調了揭示證據的關鍵技術。

網路取證是一個不斷增長的領域,隨著網路犯罪變得越來越複雜,它在執法中的重要性也日益增加。本書提供前所未有的密集實作訓練,以賦予調查員所需的技能。

  • 調查封包擷取以檢查網路通訊
  • 定位基於主機的工件並分析網路日誌
  • 了解入侵偵測系統——並讓它們進行基礎工作
  • 在事件發生前建立正確的架構和系統

網路數據總是在變化,且從不會儲存在一個地方;調查員必須了解如何隨著時間檢查數據,這涉及到超越記憶體、行動裝置或數據取證的專業技能。無論您是準備安全認證,還是僅僅尋求更深入的執法或 IT 角色訓練,您只能從概念中學到這麼多;要徹底理解某件事,您需要實踐網路取證 提供了密集的實作練習,並能直接轉化為真實世界的應用。