Get in Touch

Course Outline

Introduction to Kali Linux in Forensic Contexts

  • Overview of Kali Linux and its forensic features
  • Setting up a forensic-ready portable workstation
  • Understanding chain of custody and relevant legal frameworks

Disk and File System Examination

  • Processes for acquiring and imaging storage media
  • File system analysis using Autopsy and the Sleuth Kit
  • Techniques for recovering deleted files and uncovering hidden data

Memory and Process Inspection

  • Methods for capturing volatile memory content
  • Investigating active processes and malware behavior
  • Applying Volatility for in-depth memory analysis

Network Forensics Application

  • Recording live network data streams
  • Packet analysis using Wireshark and tcpdump
  • Tracking intrusion pathways and lateral movement activities

Log and Digital Artifact Review

  • Auditing system and application log files
  • Recognizing signs of unauthorized access or compromise
  • Conducting timeline-based analysis of incident events

Incident Investigation Procedures

  • Validating the acquisition of physical and digital evidence
  • Implementing a structured, step-by-step investigation approach
  • Preparing documentation of findings for key stakeholders

Advanced Tools and Methodologies

  • Utilizing mobile device forensic utilities within Kali
  • Analyzing steganography and encryption mechanisms
  • Streamlining forensic workflows through script automation

Conclusion and Future Directions

Requirements

  • Fundamental proficiency with the Linux command line interface
  • General knowledge of cybersecurity principles
  • Professional experience in incident response or IT security operations

Target Audience

  • Digital forensic specialists
  • Members of incident response teams
  • IT security practitioners
 21 Hours

Number of participants


Price per participant

Upcoming Courses

Related Categories