1 option
Incident response & computer forensics, third edition : Jason T. Luttgens, Matthew Pepe and Kevin Mandia.
- Format:
- Book
- Author/Creator:
- Luttgens, Jason T., author.
- Pepe, Matthew, author.
- Mandia, Kevin, author.
- Language:
- English
- Subjects (All):
- Computer crimes--Investigation.
- Computer security.
- Computer crimes.
- Physical Description:
- 1 online resource (1 v.) : ill.
- Edition:
- Third edition.
- Other Title:
- Incident response and computer forensics
- Place of Publication:
- New York, United States of America : McGraw-Hill Education, 2014.
- System Details:
- text file
- Summary:
- The definitive guide to incident response--updated for the first time in a decade! Thoroughly revised to cover the latest and most effective tools and techniques, Incident Response & Computer Forensics , Third Edition arms you with the information you need to get your organization out of trouble when data breaches occur. This practical resource covers the entire lifecycle of incident response, including preparation, data collection, data analysis, and remediation. Real-world case studies reveal the methods behind--and remediation strategies for--today's most insidious attacks. Architect an infrastructure that allows for methodical investigation and remediation Develop leads, identify indicators of compromise, and determine incident scope Collect and preserve live data Perform forensic duplication Analyze data from networks, enterprise services, and applications Investigate Windows and Mac OS X systems Perform malware triage Write detailed incident response reports Create and implement comprehensive remediation plans
- Contents:
- Part 1 Preparing for the Inevitable Incident
- 1 Real World Incidents
- 2 IR Management Handbook
- 3 Pre-Incident Preparation
- Part 2 Incident Detection and Characterization
- 4 Getting the Investigation Started
- 5 Initial Development of Leads
- 6 Discovering the Scope of the Incident
- Part 3 Data Collection
- 7 Live Data Collection
- 8 Forensic Duplication
- 9 Network Evidence
- 10 Enterprise Services
- Part 4 Data Analysis
- 11 Analysis Methodology
- 12 Investigating Windows Systems
- 13 Investigating MacOS Systems
- 14 Investigating Applications
- 15 Malware Triage
- 16 Report Writing
- Part 5 Remediation
- 17 Remediation Introduction
- 18 Remediation Case Studies
- Part 6 Appendices
- App A Answers to Questions
- App B Incident Response Forms.
- Notes:
- Includes index.
- Previous ed.: 2003.
- Description based on print version record.
- ISBN:
- 9780071798693
- OCLC:
- 894514708
The Penn Libraries is committed to describing library materials using current, accurate, and responsible language. If you discover outdated or inaccurate language, please fill out this feedback form to report it and suggest alternative language.