My Account Log in

1 option

Computer forensics : incident response essentials

O'Reilly Online Learning: Academic/Public Library Edition Available online

View online
Format:
Book
Author/Creator:
Kruse, Warren G., author.
Heiser, Jay G., author.
Language:
English
Subjects (All):
Computer security--Security measures.
Computer security.
Computer networks.
Forensic sciences.
Genre:
Electronic books.
Physical Description:
1 online resource (xiii, 398 p.) : ill.
Edition:
1st edition
Place of Publication:
[Boston, Mass. ; London] : Addison Wesley, 2001.
Language Note:
English
System Details:
text file
Summary:
Every computer crime leaves tracks—you just have to know where to find them. This book shows you how to collect and analyze the digital evidence left behind in a digital crime scene. Computers have always been susceptible to unwanted intrusions, but as the sophistication of computer technology increases so does the need to anticipate, and safeguard against, a corresponding rise in computer-related criminal activity. Computer forensics, the newest branch of computer security, focuses on the aftermath of a computer security incident. The goal of computer forensics is to conduct a structured investigation to determine exactly what happened, who was responsible, and to perform the investigation in such a way that the results are useful in a criminal proceeding. Written by two experts in digital investigation, Computer Forensics provides extensive information on how to handle the computer as evidence. Kruse and Heiser walk the reader through the complete forensics process—from the initial collection of evidence through the final report. Topics include an overview of the forensic relevance of encryption, the examination of digital evidence for clues, and the most effective way to present your evidence and conclusions in court. Unique forensic issues associated with both the Unix and the Windows NT/2000 operating systems are thoroughly covered. This book provides a detailed methodology for collecting, preserving, and effectively using evidence by addressing the three A's of computer forensics: Acquire the evidence without altering or damaging the original data. Authenticate that your recorded evidence is the same as the original seized data. Analyze the data without modifying the recovered data. Computer Forensics is written for everyone who is responsible for investigating digital criminal incidents or who may be interested in the techniques that such investigators use. It is equally helpful to those investigating hacked web servers, and those who are investigating the source of illegal pornography. 0201707195B09052001
Contents:
Introduction to computer forensics
Tracking an offender
The basics of hard drives and storage media
Encryption and forensics
Data hiding
Hostile code
Your electronic toolkit
Investigating Windows computers
Introduction to Unix for forensic examiners
Compromising a Unix host
Investigating a Unix host
Introduction to the criminal justice system.
Notes:
Bibliographic Level Mode of Issuance: Monograph
Includes bibliographical references (p. 381-384) and index.
Description based on publisher supplied metadata and other sources.
ISBN:
9786612692024
9781282692022
128269202X
9780672333958
0672333953
OCLC:
1027145114

The Penn Libraries is committed to describing library materials using current, accurate, and responsible language. If you discover outdated or inaccurate language, please fill out this feedback form to report it and suggest alternative language.

Find

Home Release notes

My Account

Shelf Request an item Bookmarks Fines and fees Settings

Guides

Using the Find catalog Using Articles+ Using your account