Learning Android Forensics
暫譯: 學習 Android 取證技術

Rohit Tamma, Donnie Tindall

  • 出版商: Packt Publishing
  • 出版日期: 2015-04-30
  • 售價: $2,220
  • 貴賓價: 9.5$2,109
  • 語言: 英文
  • 頁數: 337
  • 裝訂: Paperback
  • ISBN: 1782174575
  • ISBN-13: 9781782174578
  • 相關分類: Android
  • 海外代購書籍(需單獨結帳)

買這商品的人也買了...

商品描述

A hands-on guide to Android forensics, from setting up the forensic workstation to analyzing key forensic artifacts

About This Book

  • A professional, step-by-step approach to forensic analysis complete with key strategies and techniques
  • Analyze the most popular Android applications using free and open source tools
  • Learn forensically-sound core data extraction and recovery techniques

Who This Book Is For

If you are a forensic analyst or an information security professional wanting to develop your knowledge of Android forensics, then this is the book for you. Some basic knowledge of the Android mobile platform is expected.

What You Will Learn

  • Understand the Android system architecture and its significance for Android forensics
  • Build a forensically sound workstation
  • Utilize ADB to acquire data
  • Bypass Android security such as PINs and passwords
  • Perform both logical and full physical extractions to retrieve data
  • Reverse-engineer applications  
  • Analyze data from many popular applications including Gmail, WhatsApp, and Snapchat
  • Discover free and open source tools to aid in data acquisition and analysis

In Detail

Many forensic examiners rely on commercial, push-button tools to retrieve and analyze data, even though there is no tool that does either of these jobs perfectly. This book will introduce you to the Android platform and its architecture, and provides a high-level overview of what Android  forensics entails. You will see how data is stored on Android devices and how to set up a digital forensic examination environment. Next, you will go through the various physical and logical techniques to extract data from devices to obtain forensic evidence. You will also learn how to reverse-engineer applications and forensically analyze the data with the help of various open source and commercial tools.

By the end of this book, you will have a complete understanding of the Android forensic process.

商品描述(中文翻譯)

**一本實用的 Android 取證指南,從設置取證工作站到分析關鍵取證文物**

## 本書介紹
- 專業的逐步取證分析方法,包含關鍵策略和技術
- 使用免費和開源工具分析最受歡迎的 Android 應用程式
- 學習取證可靠的核心數據提取和恢復技術

## 本書適合誰
如果您是取證分析師或資訊安全專業人士,想要增進對 Android 取證的知識,那麼這本書就是為您而寫的。預期讀者需具備一些 Android 行動平台的基本知識。

## 您將學到什麼
- 了解 Android 系統架構及其對 Android 取證的重要性
- 建立一個取證可靠的工作站
- 利用 ADB 獲取數據
- 繞過 Android 安全措施,如 PIN 碼和密碼
- 執行邏輯和完整的物理提取以檢索數據
- 反向工程應用程式
- 分析來自許多流行應用程式的數據,包括 Gmail、WhatsApp 和 Snapchat
- 發現免費和開源工具以協助數據獲取和分析

## 詳細內容
許多取證檢查員依賴商業的按鈕式工具來檢索和分析數據,儘管沒有任何工具能完美地完成這兩項工作。本書將介紹 Android 平台及其架構,並提供 Android 取證的高層次概述。您將了解數據如何儲存在 Android 設備上,以及如何設置數位取證檢查環境。接下來,您將學習各種物理和邏輯技術,從設備中提取數據以獲得取證證據。您還將學習如何反向工程應用程式,並利用各種開源和商業工具進行取證數據分析。

在本書結束時,您將對 Android 取證過程有全面的理解。