Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Course Outline
Introduction to Kali Linux in Forensic Contexts
- Overview of Kali Linux and its forensic features
- Setting up a forensic-ready portable workstation
- Understanding chain of custody and relevant legal frameworks
Disk and File System Examination
- Processes for acquiring and imaging storage media
- File system analysis using Autopsy and the Sleuth Kit
- Techniques for recovering deleted files and uncovering hidden data
Memory and Process Inspection
- Methods for capturing volatile memory content
- Investigating active processes and malware behavior
- Applying Volatility for in-depth memory analysis
Network Forensics Application
- Recording live network data streams
- Packet analysis using Wireshark and tcpdump
- Tracking intrusion pathways and lateral movement activities
Log and Digital Artifact Review
- Auditing system and application log files
- Recognizing signs of unauthorized access or compromise
- Conducting timeline-based analysis of incident events
Incident Investigation Procedures
- Validating the acquisition of physical and digital evidence
- Implementing a structured, step-by-step investigation approach
- Preparing documentation of findings for key stakeholders
Advanced Tools and Methodologies
- Utilizing mobile device forensic utilities within Kali
- Analyzing steganography and encryption mechanisms
- Streamlining forensic workflows through script automation
Conclusion and Future Directions
Requirements
- Fundamental proficiency with the Linux command line interface
- General knowledge of cybersecurity principles
- Professional experience in incident response or IT security operations
Target Audience
- Digital forensic specialists
- Members of incident response teams
- IT security practitioners
21 Hours