Learning IOS Forensics

Mattia Epifani, Pasquale Stirparo

  • 出版商: Packt Publishing
  • 出版日期: 2015-03-13
  • 售價: $1,680
  • 貴賓價: 9.5$1,596
  • 語言: 英文
  • 頁數: 164
  • 裝訂: Paperback
  • ISBN: 1783553510
  • ISBN-13: 9781783553518
  • 相關分類: Apple Developer
  • 海外代購書籍(需單獨結帳)

相關主題

商品描述

A practical hands-on guide to acquire and analyze iOS devices with the latest forensic techniques and tools

About This Book

  • Perform logical, physical, and file system acquisition along with jailbreaking the device
  • Get acquainted with various case studies on different forensic toolkits that can be used
  • A step-by-step approach with plenty of examples to get you familiarized with digital forensics in iOS

Who This Book Is For

If you are a digital forensics examiner daily involved in the acquisition and analysis of mobile devices and want to have a complete overview of how to perform your work on iOS devices, this book is definitely for you.

What You Will Learn

  • Identify an iOS device among various models (iPhone, iPad, and iPod Touch) and verify the iOS version installed
  • Crack or bypass the passcode protection chosen by the user
  • Acquire detailed physical or logical info of an iOS device
  • Retrieve extra information from side channel data leaks
  • Recover information from a local backup and eventually crack the backup password
  • Download backup information stored on iCloud
  • Analyze the system, user, and third-party information from a device, backup, or iCloud
  • Examine malicious apps to identify the stolen data and credentials

In Detail

Mobile device forensics relates to the recovery of data from a mobile device. It has an impact on many different situations including criminal investigations and intelligence gathering. iOS devices, with their wide range of functionality and usability, have become one of the mobile market leaders. Millions of people often depend on iOS devices for storing sensitive information, leading to a rise in cybercrime. This has increased the need to successfully retrieve this information from these devices if stolen or lost.

Learning iOS Forensics will give you an insight into the forensics activities you can perform on iOS devices. You will begin with simple concepts such as identifying the specific iOS device and the operating system version and then move on to complex topics such as analyzing the different recognized techniques to acquire the content of the device. Throughout the journey, you will gain knowledge of the best way to extract most of the information by eventually bypassing the protection passcode. After that, you, the examiner, will be taken through steps to analyze the data. The book will give you an overview of how to analyze malicious applications created to steal user credentials and data.

商品描述(中文翻譯)

一本實用的手把手指南,教你如何使用最新的取證技術和工具來獲取和分析 iOS 設備

關於本書
- 執行邏輯、物理和檔案系統的獲取,並對設備進行越獄
- 熟悉各種案例研究,了解可以使用的不同取證工具包
- 逐步方法,提供大量範例,幫助你熟悉 iOS 的數位取證

本書適合誰
如果你是一名數位取證檢查員,日常涉及移動設備的獲取和分析,並希望全面了解如何在 iOS 設備上執行工作,那麼這本書絕對適合你。

你將學到什麼
- 在各種型號的 iOS 設備(iPhone、iPad 和 iPod Touch)中識別 iOS 設備並驗證安裝的 iOS 版本
- 破解或繞過用戶選擇的密碼保護
- 獲取 iOS 設備的詳細物理或邏輯資訊
- 從側通道數據洩漏中檢索額外資訊
- 從本地備份中恢復資訊,並最終破解備份密碼
- 下載存儲在 iCloud 上的備份資訊
- 分析設備、備份或 iCloud 中的系統、用戶和第三方資訊
- 檢查惡意應用程序以識別被盜的數據和憑證

詳細內容
移動設備取證涉及從移動設備中恢復數據。它對許多不同的情況產生影響,包括刑事調查和情報收集。iOS 設備因其廣泛的功能和可用性,已成為移動市場的領導者之一。數百萬人經常依賴 iOS 設備來存儲敏感資訊,這導致了網絡犯罪的增加。因此,成功從這些設備中檢索資訊的需求也隨之上升,特別是在設備被盜或丟失的情況下。

學習 iOS 取證將使你深入了解可以在 iOS 設備上執行的取證活動。你將從識別特定的 iOS 設備和操作系統版本等簡單概念開始,然後轉向更複雜的主題,例如分析不同的認可技術以獲取設備內容。在這個過程中,你將獲得提取大部分資訊的最佳方法,最終繞過保護密碼。之後,你,作為檢查員,將被引導進行數據分析。本書將為你提供如何分析旨在竊取用戶憑證和數據的惡意應用程序的概述。