Comprehensive forensic reference explaining how file systems function and how forensic tools might work on particular file systems
File System Forensics delivers comprehensive knowledge of how file systems function and, more importantly, how digital forensic tools might function in relation to specific file systems. It provides a step-by-step approach for file content and metadata recovery to allow the reader to manually recreate and validate results from file system forensic tools.
The book includes a supporting website that shares all of the data (i.e. sample file systems) used for demonstration in the text and provides teaching resources such as instructor guides, extra material, and more.
Written by a highly qualified associate professor and consultant in the field, File System Forensics includes information on:
- The necessary concepts required to understand file system forensics for anyone with basic computing experience
- File systems specific to Windows, Linux, and macOS, with coverage of FAT, ExFAT, and NTFS
- Advanced topics such as deleted file recovery, fragmented file recovery, searching for particular files, links, checkpoints, snapshots, and RAID
- Issues facing file system forensics today and various issues that might evolve in the field in the coming years
File System Forensics is an essential, up-to-date reference on the subject for graduate and senior undergraduate students in digital forensics, as well as digital forensic analysts and other law enforcement professionals.
Betal enkelt med kort, Klarna, Apple Pay eller Google Pay. Ikke fornøyd? Du har alltid 14 dagers angrerett. Les mer i våre vilkår. Har du spørsmål, send oss en e-post på hello@memmo.org.
Memmo gjør det enklere å studere – uansett hvor du er i verden. Hos oss samler du pensumbøker og smarte studieverktøy på ett og samme sted: sammendrag, quizer, podkaster og flashcards. Og så Ted, din studiekompis som svarer på alt du lurer på. Over 50 000 studenter studerer allerede her – bygget for at du skal lære raskere og stresse mindre.