Fundamentals of Digital Forensics: A Guide to Theory, Research and Applications

Kävrestad, Joakim, Birath, Marcus, Clarke, Nathan

  • 出版商: Springer
  • 出版日期: 2024-03-22
  • 售價: $3,360
  • 貴賓價: 9.5$3,192
  • 語言: 英文
  • 頁數: 298
  • 裝訂: Hardcover - also called cloth, retail trade, or trade
  • ISBN: 3031536487
  • ISBN-13: 9783031536489
  • 海外代購書籍(需單獨結帳)

相關主題

商品描述

This textbook describes the theory and methodology of digital forensic examinations, presenting examples developed in collaboration with police authorities to ensure relevance to real-world practice. The coverage includes discussions on forensic artifacts and constraints, as well as forensic tools used for law enforcement and in the corporate sector. Emphasis is placed on reinforcing sound forensic thinking, and gaining experience in common tasks through hands-on exercises.

This enhanced third edition describes practical digital forensics with open-source tools and includes an outline of current challenges and research directions.

Topics and features:

  • Outlines what computer forensics is, and what it can do, as well as what its limitations are
  • Discusses both the theoretical foundations and the fundamentals of forensic methodology
  • Reviews broad principles that are applicable worldwide
  • Explains how to find and interpret several important artifacts
  • Describes free and open-source software tools
  • Features content on corporate forensics, ethics, SQLite databases, triage, and memory analysis
  • Includes new supporting video lectures on YouTube

This easy-to-follow primer is an essential resource for students of computer forensics, and will also serve as a valuable reference for practitioners seeking instruction on performing forensic examinations.

商品描述(中文翻譯)

本教科書描述了數位取證檢查的理論和方法論,並提供了與警方合作開發的實例,以確保與實際應用相關。內容包括對取證藝術和限制的討論,以及在執法和企業界使用的取證工具。強調加強健全的取證思維,並通過實踐練習獲得常見任務的經驗。

這本增強版的第三版描述了使用開源工具進行實際數位取證,並概述了當前挑戰和研究方向。

主題和特點包括:
- 概述了電腦取證的定義、功能和限制
- 討論了理論基礎和取證方法論的基本原則
- 回顧了適用於全球的廣泛原則
- 解釋了如何找到並解讀幾個重要的取證藝術品
- 描述了免費和開源軟體工具
- 包括企業取證、倫理、SQLite數據庫、分流和記憶體分析的內容
- 包含在YouTube上的新支援視頻講座

這本易於理解的入門指南是計算機取證學生的重要資源,也是從事取證檢查的從業人員尋求指導的寶貴參考資料。

作者簡介

Joakim Kävrestad is a lecturer and researcher at Jönköping School of Engineering, Sweden, and an AccessData Certified Examiner. He also serves as a forensic consultant, with several years of experience as a forensic expert with the Swedish police. Marcus Birath is an adjunct senior lecturer in informatics at the University of Skövde. Nathan Clarke is a Professor of Cyber Security and Digital Forensics at the University of Plymouth. He is also an adjunct Professor at Edith Cowan University, Western Australia.

作者簡介(中文翻譯)

Joakim Kävrestad 是瑞典延雪平工程學院的講師和研究員,也是一位AccessData認證的鑑識專家。他還擔任鑑識顧問,擁有多年在瑞典警察擔任鑑識專家的經驗。Marcus Birath 是斯科夫德大學資訊學的兼職高級講師。Nathan Clarke 是普利茅斯大學的網路安全和數位鑑識教授,也是西澳大利亞伊迪斯考恩大學的兼職教授。