Get in Touch

Course Outline

Introduction to Kali Linux in Forensics

  • Overview of Kali Linux and its forensic potential
  • Preparing a laptop for forensic readiness
  • Chain of custody protocols and legal implications

Disk and File System Forensics

  • Methods for acquiring and imaging disks
  • Examining file systems using Autopsy and Sleuth Kit
  • Techniques for restoring deleted files and uncovering hidden data

Memory and Process Analysis

  • Techniques for capturing volatile memory
  • Investigating active processes and malware presence
  • Utilizing Volatility for deep memory analysis

Network Forensics

  • Methods for intercepting live network traffic
  • Packet analysis using Wireshark and tcpdump
  • Tracking intrusion patterns and lateral movement

Log and Artifact Analysis

  • Reviewing system and application logs
  • Identifying signs of compromise
  • Performing timeline analysis of incidents

Incident Investigation Workflow

  • Acquiring and validating evidence
  • Applying a structured investigation methodology
  • Documenting findings for stakeholder review

Advanced Tools and Techniques

  • Mobile device forensic utilities within Kali
  • Analyzing steganography and encryption
  • Automating forensic tasks through scripting

Summary and Future Directions

Requirements

  • Fundamental proficiency with the Linux command line
  • Knowledge of core cybersecurity principles
  • Background experience in incident response or IT security operations

Intended Audience

  • Digital forensic investigators
  • Members of incident response teams
  • IT security specialists
 21 Hours

Number of participants


Price per participant

Upcoming Courses

Related Categories