Practical Mobile Forensics - Fourth Edition
暫譯: 實用行動取證 - 第四版

Rohit Tamma , Oleg Skulkin , Heather Mahalik , Satish Bommisetty

  • 出版商: Packt Publishing
  • 出版日期: 2020-04-09
  • 售價: $1,830
  • 貴賓價: 9.5$1,739
  • 語言: 英文
  • 頁數: 400
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 183864752X
  • ISBN-13: 9781838647520
  • 相關分類: 資訊安全
  • 海外代購書籍(需單獨結帳)

買這商品的人也買了...

相關主題

商品描述

Key Features

  • Apply advanced forensic techniques to recover deleted data from mobile devices
  • Retrieve and analyze data stored not only on mobile devices but also on the cloud and other connected mediums
  • Use the power of mobile forensics on popular mobile platforms by exploring different tips, tricks, and techniques

Book Description

Mobile phone forensics is the science of retrieving data from a mobile phone under forensically sound conditions. This updated fourth edition of Practical Mobile Forensics delves into the concepts of mobile forensics and its importance in today's world.

The book focuses on teaching you the latest forensic techniques to investigate mobile devices across various mobile platforms. You will learn forensic techniques for multiple OS versions, including iOS 11 to iOS 13, Android 8 to Android 10, and Windows 10. The book then takes you through the latest open source and commercial mobile forensic tools, enabling you to analyze and retrieve data effectively. From inspecting the device and retrieving data from the cloud, through to successfully documenting reports of your investigations, you'll explore new techniques while building on your practical knowledge. Toward the end, you will understand the reverse engineering of applications and ways to identify malware. Finally, the book guides you through parsing popular third-party applications, including Facebook and WhatsApp.

By the end of this book, you will be proficient in various mobile forensic techniques to analyze and extract data from mobile devices with the help of open source solutions.

What you will learn

  • Discover new data extraction, data recovery, and reverse engineering techniques in mobile forensics
  • Understand iOS, Windows, and Android security mechanisms
  • Identify sensitive files on every mobile platform
  • Extract data from iOS, Android, and Windows platforms
  • Understand malware analysis, reverse engineering, and data analysis of mobile devices
  • Explore various data recovery techniques on all three mobile platforms

Who this book is for

This book is for forensic examiners with basic experience in mobile forensics or open source solutions for mobile forensics. Computer security professionals, researchers or anyone looking to gain a deeper understanding of mobile internals will also find this book useful. Some understanding of digital forensic practices will be helpful to grasp the concepts covered in the book more effectively.

商品描述(中文翻譯)

**主要特點**

- 應用先進的取證技術從移動設備中恢復已刪除的數據
- 檢索和分析不僅存儲在移動設備上的數據,還包括雲端和其他連接媒介上的數據
- 利用移動取證的力量,通過探索不同的技巧和技術,應用於流行的移動平台

**書籍描述**

手機取證是從手機中在法醫學上可靠的條件下檢索數據的科學。本書《實用移動取證》第四版深入探討了移動取證的概念及其在當今世界的重要性。

本書專注於教導您最新的取證技術,以調查各種移動平台上的移動設備。您將學習多個操作系統版本的取證技術,包括 iOS 11 到 iOS 13、Android 8 到 Android 10 以及 Windows 10。接著,本書將帶您了解最新的開源和商業移動取證工具,使您能夠有效地分析和檢索數據。從檢查設備和從雲端檢索數據,到成功記錄調查報告,您將探索新技術,同時增強您的實踐知識。在最後,您將理解應用程序的逆向工程及識別惡意軟件的方法。最後,本書將指導您解析流行的第三方應用程序,包括 Facebook 和 WhatsApp。

在本書結束時,您將熟練掌握各種移動取證技術,以開源解決方案分析和提取移動設備中的數據。

**您將學到什麼**

- 發現移動取證中的新數據提取、數據恢復和逆向工程技術
- 理解 iOS、Windows 和 Android 的安全機制
- 識別每個移動平台上的敏感文件
- 從 iOS、Android 和 Windows 平台提取數據
- 理解惡意軟件分析、逆向工程和移動設備的數據分析
- 探索所有三個移動平台上的各種數據恢復技術

**本書適合誰**

本書適合具有基本移動取證或開源移動取證解決方案經驗的取證檢查員。計算機安全專業人士、研究人員或任何希望深入了解移動內部結構的人也會發現本書有用。對數字取證實踐有一定了解將有助於更有效地掌握書中涵蓋的概念。

作者簡介

Rohit Tamma is a senior program manager currently working with Microsoft. With over 10 years of experience in the field of security, his background spans management and technical consulting roles in the areas of application and cloud security, mobile security, penetration testing, and secure coding. Rohit has also co-authored Learning Android Forensics, from Packt, which explain various ways to perform forensics on mobile platforms. You can contact him on Twitter at @RohitTamma.

Oleg Skulkin is a senior digital forensic analyst at Group-IB, one of the global leaders in preventing and investigating high-tech crimes and online fraud. He holds a number of certifications, including GCFA, GCTI, and MCFE. Oleg has also co-authored Windows Forensics Cookbook, and Learning Android Forensics, both from Packt, as well as many blog posts and articles on digital forensics, incident response, and threat hunting that you can find online. You can contact him on Twitter at @oskulkin.

Heather Mahalik is the senior director of digital intelligence at Cellebrite. She is a senior instructor and author for the SANS Institute, and she is also the course lead for the FOR585 Smartphone Forensic Analysis In-Depth course. With 18 years of experience in digital forensics, she continues to thrive on smartphone investigations, digital forensics, forensic course development and instruction, and research on application analysis and smartphone forensics.

Satish Bommisetty is a security architect currently working with JDA. His primary areas of interest include web and mobile application security, cloud security, and iOS forensics. He has presented at security conferences, such as ClubHACK and C0C0n. Satish is one of the top bug bounty hunters and is listed in the halls of fame of Google, Facebook, PayPal, Microsoft, Yahoo, Salesforce, and more, for identifying and reporting their security vulnerabilities. You can reach him on Twitter at @satishb3.

作者簡介(中文翻譯)

Rohit Tamma 是一位資深程式經理,目前在微軟工作。他在安全領域擁有超過10年的經驗,背景涵蓋應用程式和雲端安全、行動安全、滲透測試及安全編碼等管理和技術顧問角色。Rohit 也共同撰寫了 Packt 出版的《Learning Android Forensics》,該書解釋了在行動平台上進行取證的各種方法。您可以在 Twitter 上聯繫他,帳號為 @RohitTamma。

Oleg Skulkin 是 Group-IB 的資深數位取證分析師,Group-IB 是全球領先的高科技犯罪和網路詐騙預防及調查機構之一。他擁有多項認證,包括 GCFA、GCTI 和 MCFE。Oleg 也共同撰寫了 Packt 出版的《Windows Forensics Cookbook》和《Learning Android Forensics》,以及許多關於數位取證、事件響應和威脅獵捕的部落格文章和論文,您可以在網上找到。您可以在 Twitter 上聯繫他,帳號為 @oskulkin。

Heather Mahalik 是 Cellebrite 的數位智慧資深總監。她是 SANS Institute 的資深講師和作者,也是 FOR585 智慧型手機取證分析深入課程的課程負責人。擁有18年數位取證經驗的她,持續專注於智慧型手機調查、數位取證、取證課程開發與教學,以及應用程式分析和智慧型手機取證的研究。

Satish Bommisetty 是目前在 JDA 工作的安全架構師。他的主要興趣領域包括網頁和行動應用程式安全、雲端安全以及 iOS 取證。他曾在 ClubHACK 和 C0C0n 等安全會議上發表演講。Satish 是頂尖的漏洞獵人之一,因識別和報告 Google、Facebook、PayPal、微軟、Yahoo、Salesforce 等公司的安全漏洞而被列入其名人堂。您可以在 Twitter 上聯繫他,帳號為 @satishb3。

目錄大綱

  1. Introduction to Mobile Forensics
  2. Understanding the Internals of iOS Devices
  3. Data Acquisition from iOS Devices
  4. Data Acquisition from iOS Backups
  5. iOS Data Analysis and Recovery
  6. iOS Forensic Tools
  7. Understanding Android
  8. Android Forensic Setup and Pre-Data Extraction Techniques
  9. Android Data Extraction Techniques
  10. Android Data Analysis and Recovery
  11. Android App Analysis, Malware, and Reverse Engineering
  12. Windows Phone Forensics
  13. Parsing Third-Party Application Files

目錄大綱(中文翻譯)


  1. Introduction to Mobile Forensics

  2. Understanding the Internals of iOS Devices

  3. Data Acquisition from iOS Devices

  4. Data Acquisition from iOS Backups

  5. iOS Data Analysis and Recovery

  6. iOS Forensic Tools

  7. Understanding Android

  8. Android Forensic Setup and Pre-Data Extraction Techniques

  9. Android Data Extraction Techniques

  10. Android Data Analysis and Recovery

  11. Android App Analysis, Malware, and Reverse Engineering

  12. Windows Phone Forensics

  13. Parsing Third-Party Application Files