Moocable is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Operating System Forensics

Description

Learn the fundamentals of operating system forensics. Find out how to recover evidence from the operating system of any computer.

Tags

Syllabus

Introduction
  • Operating system forensics
1. Operating Systems and Digital Forensics
  • Introduction
  • History
  • Core concepts
  • Roles in computing
  • Process management hands-on
  • Roles in forensics
  • Future
2. File System Types
  • Introduction
  • Windows file systems
  • Windows hands-on
  • Linux file systems
  • Linux hands-on
  • Apple file systems
  • Apple hands-on
3. File Recovery
  • Introduction
  • Data carving
  • Data carving preparation
  • Data carving hands-on
  • Slack space
  • Data hiding and ADS
  • Data hiding hands-on
4. Live Acquisition
  • Introduction
  • Addressing
  • Memory structure
  • Virtual memory
  • Memory dump analysis with Volatility
  • Processes
  • Network connections
Conclusion
  • Next steps

Online Course


Operating System Forensics

Affiliate notice

Learn the fundamentals of operating system forensics. Find out how to recover evidence from the operating system of any computer.

Introduction
  • Operating system forensics
1. Operating Systems and Digital Forensics
  • Introduction
  • History
  • Core concepts
  • Roles in computing
  • Process management hands-on
  • Roles in forensics
  • Future
2. File System Types
  • Introduction
  • Windows file systems
  • Windows hands-on
  • Linux file systems
  • Linux hands-on
  • Apple file systems
  • Apple hands-on
3. File Recovery
  • Introduction
  • Data carving
  • Data carving preparation
  • Data carving hands-on
  • Slack space
  • Data hiding and ADS
  • Data hiding hands-on
4. Live Acquisition
  • Introduction
  • Addressing
  • Memory structure
  • Virtual memory
  • Memory dump analysis with Volatility
  • Processes
  • Network connections
Conclusion
  • Next steps