Text
Computer evidence: collection and preservation
Terdapat indeks.
Table of Contents:
Part I Computer Forensics and Evidence Dynamics
1. Computer Forensics Essentials
2. Rules of Evidence, Case Law, and Regulation
3. Evidence Dynamics
Part II Information Systems
4. Interview, Policy, and Audit
5. Network Topology and Architecture
6. Volatile Data
Part III Data Storage Systems and Media
7. Physical Disk Technologies
8. SAN, NAS, and RAID
9. Removable Media
Part IV Artifact Collection
10. Tools, Preparation, and Documentation
11. Collecting Volatile Data
12. Imaging Methodologies
13. Large System Collection
14. Personal Portable Device Collection
Part V Archiving and Maintaining Evidence
15. The Forensics Workstation
16. The Forensics Lab
17. What’s Next
Part VI Computer Evidence Collection and Preservation Appendixes
A. Sample Chain of Custody Form
B. Evidence Collection Worksheet
C. Evidence Access Worksheet
D. Forensics Field Kit
E. Hexadecimal Flags for Partition Types
F. Forensics Tools for Digital Evidence Collection
G. Agencies, Contacts, and Resources
H. Cisco Router Command Cheat Sheet
I. About the CD-ROM
Index
No other version available