Get in Touch

Course Outline

Foundations of Kali Linux in Forensics

  • Overview of Kali Linux and its specific forensic features.
  • Configuring a laptop for forensic readiness.
  • Understanding chain of custody protocols and legal implications.

Forensic Analysis of Disks and File Systems

  • Processes for disk acquisition and imaging.
  • File system examination utilizing Autopsy and the Sleuth Kit.
  • Techniques for restoring deleted files and uncovering concealed data.

Memory and Process Examination

  • Methods for capturing volatile memory states.
  • Investigating active processes and potential malware presence.
  • Applying Volatility for in-depth memory analysis.

Network Forensic Procedures

  • Recording live network traffic for later review.
  • Packet analysis using Wireshark and tcpdump.
  • Tracking intrusion patterns and lateral movement within networks.

Examination of Logs and Artifacts

  • Reviewing both system-level and application-specific logs.
  • Detecting signs of system compromise.
  • Conducting timeline analyses of security incidents.

Workflow for Incident Investigation

  • Acquisition and verification of digital evidence.
  • Implementing a structured investigation methodology.
  • Documenting results for reporting to stakeholders.

Advanced Forensic Tools and Methods

  • Utilizing mobile device forensic instruments within Kali.
  • Analysis of steganography and encrypted data.
  • Scripting for the automation of repetitive forensic tasks.

Conclusion and Recommendations for Further Development

Requirements

  • Fundamental proficiency with the Linux command line.
  • General familiarity with cybersecurity principles.
  • Prior exposure to incident response procedures or IT security operations.

Target Audience

  • Professionals engaged in digital forensics.
  • Members of incident response teams.
  • IT security specialists.
 21 Hours

Number of participants


Price per participant

Provisional Upcoming Courses (Require 5+ participants)

Related Categories