Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Course Outline
Introduction to Kali Linux for Forensic Applications
- Overview of Kali Linux and its forensic capabilities
- Setting up a laptop for forensic readiness
- Understanding chain of custody and legal implications
Disk and File System Examination
- Acquiring and imaging storage devices
- Examining file systems using Autopsy and Sleuth Kit
- Restoring deleted files and uncovering hidden data
Memory and Process Investigation
- Capturing volatile memory contents
- Investigating active processes and malware behavior
- Leveraging Volatility for in-depth memory analysis
Network Forensics
- Capturing real-time network traffic
- Analyzing packet data with Wireshark and tcpdump
- Tracking intrusion attempts and lateral movement patterns
Log and Artifact Examination
- Reviewing system and application logs
- Detecting indicators of compromise
- Performing timeline analysis of incident events
Incident Investigation Workflow
- Securing and verifying evidence
- Applying a structured investigation methodology
- Documenting findings for relevant stakeholders
Advanced Tools and Methodologies
- Forensic utilities for mobile devices within Kali
- Analyzing steganography and encryption methods
- Automating forensic tasks through scripting
Recap and Future Directions
Requirements
- Fundamental knowledge of the Linux command line
- Accquaintance with core cybersecurity principles
- Background in incident response or IT security operations
Target Audience
- Digital forensic examiners
- Members of incident response teams
- IT security specialists
21 Hours