Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

LinkedIn Learning

Operating System Forensics

via LinkedIn Learning

Overview

Learn the fundamentals of operating system forensics. Find out how to recover evidence from the operating system of any computer.

Syllabus

Introduction
  • Operating system forensics
1. Operating Systems and Digital Forensics
  • Introduction
  • History
  • Core concepts
  • Roles in computing
  • Process management hands-on
  • Roles in forensics
  • Future
2. File System Types
  • Introduction
  • Windows file systems
  • Windows hands-on
  • Linux file systems
  • Linux hands-on
  • Apple file systems
  • Apple hands-on
3. File Recovery
  • Introduction
  • Data carving
  • Data carving preparation
  • Data carving hands-on
  • Slack space
  • Data hiding and ADS
  • Data hiding hands-on
4. Live Acquisition
  • Introduction
  • Addressing
  • Memory structure
  • Virtual memory
  • Memory dump analysis with Volatility
  • Processes
  • Network connections
Conclusion
  • Next steps

Taught by

Jungwoo Ryoo

Reviews

4.7 rating at LinkedIn Learning based on 81 ratings

Start your review of Operating System Forensics

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.