Get in Touch

Course Outline

Introduction to Kali Linux for Forensic Applications

  • Overview of Kali Linux and its forensic capabilities
  • Setting up a laptop for forensic readiness
  • Understanding chain of custody and legal implications

Disk and File System Examination

  • Acquiring and imaging storage devices
  • Examining file systems using Autopsy and Sleuth Kit
  • Restoring deleted files and uncovering hidden data

Memory and Process Investigation

  • Capturing volatile memory contents
  • Investigating active processes and malware behavior
  • Leveraging Volatility for in-depth memory analysis

Network Forensics

  • Capturing real-time network traffic
  • Analyzing packet data with Wireshark and tcpdump
  • Tracking intrusion attempts and lateral movement patterns

Log and Artifact Examination

  • Reviewing system and application logs
  • Detecting indicators of compromise
  • Performing timeline analysis of incident events

Incident Investigation Workflow

  • Securing and verifying evidence
  • Applying a structured investigation methodology
  • Documenting findings for relevant stakeholders

Advanced Tools and Methodologies

  • Forensic utilities for mobile devices within Kali
  • Analyzing steganography and encryption methods
  • Automating forensic tasks through scripting

Recap and Future Directions

Requirements

  • Fundamental knowledge of the Linux command line
  • Accquaintance with core cybersecurity principles
  • Background in incident response or IT security operations

Target Audience

  • Digital forensic examiners
  • Members of incident response teams
  • IT security specialists
 21 Hours

Number of participants


Price per participant

Upcoming Courses

Related Categories