The Course in Forensic Analysis and Tools for Computer Forensics It arises in a context where cybersecurity and forensic analysis are more important than ever. The growing digitisation and the rise in cybercrime is creating high demand for professionals with expertise in this field. This course offers you the opportunity to acquire essential skills in the forensic analysis physical devices, operating systems and digital communications. You will learn how to to collect, analyse and present evidence effectively, turning you into an expert in the field. The training is designed to be tailored to your needs, allowing you to access high-quality content from anywhere. By the end of the course, you’ll be ready to tackle the challenges of the sector, which continues to boom and offers a wide range of job opportunities. Don’t miss the chance to be part of this exciting and vital professional field.
Forensic Analysis and Tools for Computer Forensics
Introduction
Objectives
-
Understanding the process of forensic data acquisition in physical devices and their importance in research.
-
Identify and use tools specific forensic analysis techniques for systems Windows and GNU/Linux.
-
To analyse the chain of custody and its relevance on the validity of the digital evidence gathered.
-
Assess the recovery of deleted data in different operating systems and its impact on forensic analysis.
-
Developing skills for the forensic analysis of communications digital, including emails and instant messaging.
-
To produce clear expert reports and structured which reflect the findings of the forensic analysis carried out.
-
Apply forensic analysis techniques to mobile devices, such as Android e iOS, to obtain digital evidence.
Table of Contents
TEACHING UNIT 1. FORENSIC ANALYSIS OF PHYSICAL IT DEVICES
1. Introduction to the forensic analysis of physical computer devices
2. Forensic data acquisition process
3. Data extraction tools and techniques
4. Chain of custody analysis
5. Forensic analysis of hard drives and storage devices
6. Forensic analysis of removable storage devices
7. Recovery of deleted data
TEACHING UNIT 2. FORENSIC ANALYSIS IN WINDOWS
1. Fundamentals of forensic analysis on Windows systems
2. Gathering evidence
3. Forensic analysis of the Windows registry
4. Analysis of files and metadata
5. Forensic tools specific to Windows
TEACHING UNIT 3. FORENSIC ANALYSIS IN GNULINUX
1. Introduction to forensic analysis on GNU/Linux systems
2. Gathering evidence
3. Forensic analysis of the file system
4. Analysis of logs and records
5. Forensic tools for GNU/Linux
TEACHING UNIT 4. FORENSIC ANALYSIS ON MAC OS
1. Fundamentals of forensic analysis on Mac OS systems
2. Preparation for forensic analysis
3. Data collection
4. Analysis of file systems
5. Recovery of deleted data
6. Investigation of user activities
TEACHING UNIT 5. FORENSIC ANALYSIS ON ANDROID
1. Introduction to Android Forensic Analysis
2. Preparing the forensic environment
3. Data collection on Android devices
4. Data recovery
5. Application analysis
6. Analysis of messages and communications
TEACHING UNIT 6. FORENSIC ANALYSIS ON iOS
1. Introduction to iOS Forensic Analysis
2. Preparing the forensic environment
3. Data collection on iOS devices
4. Data recovery
5. Application analysis
6. Analysis of messages and communications
TEACHING UNIT 7. FORENSIC ANALYSIS OF EMAILS, WHATSAPP MESSAGES AND OTHER COMMUNICATIONS
1. Introduction to the forensic analysis of digital communications
2. Collection of digital evidence in communications
3. Email analysis
4. Analysis of instant messaging (WhatsApp and similar apps)
5. Analysis of other digital communications
TEACHING UNIT 8. EXPERT REPORT
1. Introduction to the expert report
2. Structure and components of the expert report
3. Presentation and drafting of the expert report
4. Assessment and submission of expert reports
5. Resources and tools for report writing