Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Course Outline
Introduction to Kali Linux in Forensics
- Overview of Kali Linux and its forensic potential
- Preparing a laptop for forensic readiness
- Chain of custody protocols and legal implications
Disk and File System Forensics
- Methods for acquiring and imaging disks
- Examining file systems using Autopsy and Sleuth Kit
- Techniques for restoring deleted files and uncovering hidden data
Memory and Process Analysis
- Techniques for capturing volatile memory
- Investigating active processes and malware presence
- Utilizing Volatility for deep memory analysis
Network Forensics
- Methods for intercepting live network traffic
- Packet analysis using Wireshark and tcpdump
- Tracking intrusion patterns and lateral movement
Log and Artifact Analysis
- Reviewing system and application logs
- Identifying signs of compromise
- Performing timeline analysis of incidents
Incident Investigation Workflow
- Acquiring and validating evidence
- Applying a structured investigation methodology
- Documenting findings for stakeholder review
Advanced Tools and Techniques
- Mobile device forensic utilities within Kali
- Analyzing steganography and encryption
- Automating forensic tasks through scripting
Summary and Future Directions
Requirements
- Fundamental proficiency with the Linux command line
- Knowledge of core cybersecurity principles
- Background experience in incident response or IT security operations
Intended Audience
- Digital forensic investigators
- Members of incident response teams
- IT security specialists
21 Hours