Pattern-Oriented Memory Forensics: A Pattern Language Approach

Dmitry Vostokov, Software Diagnostics Institute

  • 出版商: Opentask
  • 出版日期: 2014-09-15
  • 售價: $1,310
  • 貴賓價: 9.5$1,245
  • 語言: 英文
  • 頁數: 98
  • 裝訂: Paperback
  • ISBN: 1908043768
  • ISBN-13: 9781908043764
  • 無法訂購

相關主題

商品描述

This is a full-color transcript of a lecture which introduces a pattern language for memory forensics - investigation of past software behaviour in memory snapshots. It provides a unified language for discussing and communicating detection and analysis results despite the proliferation of operating systems and tools, a base language for checklists, and an aid in accelerated learning. The lecture has a short theoretical part and then illustrates various patterns seen in crash dumps by using WinDbg debugger from Microsoft Debugging Tools for Windows.

商品描述(中文翻譯)

這是一份全彩的講座逐字稿,介紹了一種用於記憶體取證的模式語言——對記憶體快照中過去軟體行為的調查。它提供了一種統一的語言,用於討論和傳達檢測與分析結果,儘管操作系統和工具的數量不斷增加,並且作為檢查清單的基礎語言,以及加速學習的輔助工具。這場講座包含一小部分理論,然後通過使用微軟Windows調試工具中的WinDbg調試器來說明在崩潰轉儲中看到的各種模式。