The online computer book shop for UK & Europe                                   

   Books Home | About Us | Index | Next Record | Browse

 
  

Tel: 0121 706 6000 

Static Book Details Page - Computer Manuals Website

 Computer Evidence: Collection and Preservation (Networking & Security)
  

  Computer Evidence: Collection and Preservation (Networking & Security) by Christopher L.T. Brown

  • Published by: Charles River Media
  • Author: Christopher L.T. Brown
  • Page Count: 400
  • Group: Crime & criminology
  • ISBN: 1584504056/9781584504054
  • Published: Nov 2005

Our Price: 28.48
Discount: 20%
RRP: 35.60 

For Latest Pricing and Availability Click Here
 

The online computer book shop for UK & Europe

Book store with some thing for everyone

Book Information and Description:

Computer Evidence: Collection and Preservation (Networking & Security)
Computer Evidence: Collection & Preservation teaches law enforcement and computer forensics investigators how to collect evidence effectively to preserve its reliability and usefulness in prosecution. The book focuses on collection and preservation because these two phases of computer forensics are the most critical to evidence acceptance, but are not thoroughly covered in text or courses. Intended to be a desktop reference and field guide, this book teaches law enforcement and computer forensics investigators what forces act on data during evidence identification, collection, and storage. The simple act of a computer forensics investigator shutting down a suspect's computer changes the state of the computer as well as many of its files, so a good understanding of evidence dynamics is essential when doing computer forensics work. Broken up into five parts, Computer Forensics & Evidence Dynamics, Information Systems, Data Storage Systems & Media, Artifact Collection, and Archiving & Maintaining Evidence, the book places specific focus on how investigators and their tools are interacting with digital evidence. By reading and using this task-oriented guide the computer forensics investigator will be able to ensure case integrity during the most crucial phases of the computer forensics process.


Contents:

Preface
- Part I: Computer Forensics & Evidence Dynamics
- Chapter 1: Computer Forensics Essentials
- Chapter 2: International Rules of Evidence
- Chapter 3: Evidence Dynamics
- Part II: Information Systems
- Chapter 4: Discovering Information Systems Through Interview, Policies, and Audit
- Chapter 5: Network Topology and Its Effects on Identifying Potential Evidence
- Chapter 6: Volatille Data
- Part III: Data Storage Systems & Media
- Chapter 7: Disk IDE, SIDE, and SCSI
- Chapter 8: SAN, NAS, and RAID
- Chapter 9: Removable and Optical Media
- Chapter 10: File Systems
- Part IV: Artifact Collection
- Chapter 11: Documentation
- Chapter 12: Collecting Volatile Data
- Chapter 13: Imaging Methodologies
- Chapter 14: Large System Collection
- Part V: Archiving and Maintaining Evidence
- Chapter 15: Forensics Networks and Live Storage
- Chapter 16: Offine Storage Media
- Chapter 17: Physical Security
- Appendix A: Sample Chain of Custody Form
- Appendix B: Evidence Collection Worksheet
- Appendix C: Evidence Access Worksheets
- Appendix D: Forensics Field Kits
- Appendix E: Partition Types
- Appendix F: Drive Math
- Appendix G: Forensics Tools
- Appendix H: Agencies & Contacts
- Appendix I: Resources
- Appendix J: About the CD-ROM
- Index