You are not signed in. Sign in.

List Books: Buy books on ListBooks.org

Computer Forensics: Incident Response Essentials »

Book cover image of Computer Forensics: Incident Response Essentials by Warren G. Kruse

Authors: Warren G. Kruse, Jay Heiser
ISBN-13: 9780201707199, ISBN-10: 0201707195
Format: Paperback
Publisher: Addison-Wesley
Date Published: September 2001
Edition: (Non-applicable)

Find Best Prices for This Book »

Author Biography: Warren G. Kruse



0201707195AB05232001

Book Synopsis

Just as regular police forensics focus on the information available at a crime scene, computer forensics looks at evidence that can be gleaned in the aftermath of a computer security incident. Two computer security professionals provide a methodology for collecting information that can lead to a perpetrator and prove useful in prosecutions. Chapters cover encryption, data hiding, hostile code, and introductions to forensics on Windows and Unix operating systems.

Annotation c. Book News, Inc., Portland, OR (booknews.com)

Table of Contents

Prefacevii
Acknowledgmentsxiii
Chapter 1Introduction to Computer Forensics1
Chapter 2Tracking an Offender23
Chapter 3The Basics of Hard Drives and Storage Media65
Chapter 4Encryption and Forensics83
Chapter 5Data Hiding105
Chapter 6Hostile Code129
Chapter 7Your Electronic Toolkit149
Chapter 8Investigating Windows Computers177
Chapter 9Introduction to Unix for Forensic Examiners207
Chapter 10Compromising a Unix Host245
Chapter 11Investigating a Unix Host263
Chapter 12Introduction to the Criminal Justice System311
Chapter 13Conclusion325
Appendix AInternet Data Center Response Plan327
Appendix BIncident Response Triage Questionnaire353
Appendix CHow to Become a Unix Guru363
Appendix DExporting a Windows 2000 Personal Certificate367
Appendix EHow to Crowbar Unix Hosts375
Appendix FCreating a Linux Boot CD377
Appendix GContents of a Forensic CD379
Annotated Bibliography381
Index385

Subjects