Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Course Outline
Foundations of Kali Linux in Forensics
- Overview of Kali Linux and its specific forensic features.
- Configuring a laptop for forensic readiness.
- Understanding chain of custody protocols and legal implications.
Forensic Analysis of Disks and File Systems
- Processes for disk acquisition and imaging.
- File system examination utilizing Autopsy and the Sleuth Kit.
- Techniques for restoring deleted files and uncovering concealed data.
Memory and Process Examination
- Methods for capturing volatile memory states.
- Investigating active processes and potential malware presence.
- Applying Volatility for in-depth memory analysis.
Network Forensic Procedures
- Recording live network traffic for later review.
- Packet analysis using Wireshark and tcpdump.
- Tracking intrusion patterns and lateral movement within networks.
Examination of Logs and Artifacts
- Reviewing both system-level and application-specific logs.
- Detecting signs of system compromise.
- Conducting timeline analyses of security incidents.
Workflow for Incident Investigation
- Acquisition and verification of digital evidence.
- Implementing a structured investigation methodology.
- Documenting results for reporting to stakeholders.
Advanced Forensic Tools and Methods
- Utilizing mobile device forensic instruments within Kali.
- Analysis of steganography and encrypted data.
- Scripting for the automation of repetitive forensic tasks.
Conclusion and Recommendations for Further Development
Requirements
- Fundamental proficiency with the Linux command line.
- General familiarity with cybersecurity principles.
- Prior exposure to incident response procedures or IT security operations.
Target Audience
- Professionals engaged in digital forensics.
- Members of incident response teams.
- IT security specialists.
21 Hours