Computer Forensics: Incident Response Essentials

Computer Forensics: Incident Response Essentials
ISBN-10
0672334089
ISBN-13
9780672334085
Series
Computer Forensics
Category
Computers
Pages
416
Language
English
Published
2001-09-26
Publisher
Pearson Education
Authors
Warren G. Kruse II, Jay G. Heiser

Description

Every computer crime leaves tracks–you just have to know where to find them. This book shows you how to collect and analyze the digital evidence left behind in a digital crime scene. Computers have always been susceptible to unwanted intrusions, but as the sophistication of computer technology increases so does the need to anticipate, and safeguard against, a corresponding rise in computer-related criminal activity. Computer forensics, the newest branch of computer security, focuses on the aftermath of a computer security incident. The goal of computer forensics is to conduct a structured investigation to determine exactly what happened, who was responsible, and to perform the investigation in such a way that the results are useful in a criminal proceeding. Written by two experts in digital investigation, Computer Forensics provides extensive information on how to handle the computer as evidence. Kruse and Heiser walk the reader through the complete forensics process–from the initial collection of evidence through the final report. Topics include an overview of the forensic relevance of encryption, the examination of digital evidence for clues, and the most effective way to present your evidence and conclusions in court. Unique forensic issues associated with both the Unix and the Windows NT/2000 operating systems are thoroughly covered. This book provides a detailed methodology for collecting, preserving, and effectively using evidence by addressing the three A's of computer forensics: Acquire the evidence without altering or damaging the original data. Authenticate that your recorded evidence is the same as the original seized data. Analyze the data without modifying the recovered data. Computer Forensics is written for everyone who is responsible for investigating digital criminal incidents or who may be interested in the techniques that such investigators use. It is equally helpful to those investigating hacked web servers, and those who are investigating the source of illegal pornography.

Other editions

Similar books

  • Computer Forensics InfoSec Pro Guide
    By David Cowen

    Written by a Certified Information Systems Security Professional, Computer Forensics: InfoSec Pro Guide is filled with real-world case studies that demonstrate the concepts covered in the book.

  • Guide to Computer Forensics and Investigations
    By Bill Nelson, Amelia Phillips, Christopher Steuart

    Updated with the latest advances from the field, GUIDE TO COMPUTER FORENSICS AND INVESTIGATIONS, Fifth Edition combines all-encompassing topic coverage and authoritative information from seasoned experts to deliver the most comprehensive ...

  • Computer Forensics: Cybercriminals, Laws, and Evidence
    By Marie-Helen Maras

    Updated to include the most current events and information on cyberterrorism, the second edition of Computer Forensics: Cybercriminals, Laws, and Evidence continues to balance technicality and legal analysis as it enters into the world of ...

  • Computer Forensics For Dummies
    By Carol Pollard, Reynaldo Anzaldua

    By the time you finish reading this book, you’ll know how to: Prepare for and conduct computer forensics investigations Find and filter data Protect personal privacy Transfer evidence without contaminating it Anticipate legal loopholes ...

  • Computer Forensics JumpStart
    By Diane Barrett, Micah Solomon, Neil Broom

    Warren G. Kruse II, CISSP, CFCE, is the co-author of Computer Forensics: Incident Response Essentials, published by Addison-Wesley. Warren has conducted forensics globally in support of cases involving some of the largest law firms and ...

  • Guide to Computer Forensics and Investigations
    By Bill Nelson, Amelia Phillips, Christopher Steuart

    Updated with the latest advances from the field, GUIDE TO COMPUTER FORENSICS AND INVESTIGATIONS, Fifth Edition combines all-encompassing topic coverage, authoritative information from seasoned experts, and real-world applications to deliver ...

  • Computer Forensics: Computer Crime Scene Investigation
    By John R. Vacca

    Computer Forensics: Computer Crime Scene Investigation

  • Incident Response & Computer Forensics, Third Edition
    By Kevin Mandia, Jason T. Luttgens, Matthew Pepe

    Ryan Kazanciyan is a Technical Director with Mandiant and has 11 years of experience in incident response, forensic analysis, and penetration testing. Since joining Mandiant in 2009, he has led incident response and remediation efforts ...

  • A Practical Guide to Computer Forensics Investigations
    By Darren R. Hayes

    This well-developed book will prepare students for the rapidly-growing field of computer forensics for a career with law enforcement, accounting firms, banks and credit card companies, private investigation companies, or government agencies ...

  • Learn Computer Forensics: A beginner's guide to searching, analyzing, and securing digital evidence
    By William Oettinger

    ... to write errors directly to the file • Ability to create error log pattern wiping • Ability to verify mode • Ability to create progress reports • Ability to split outputs Jesse Kornblum developed dc3dd at the DoD Cybercrime Center.