Get in Touch

Course Outline

Introduction to Forensic Applications of Kali Linux

  • Overview of Kali Linux and its forensic capabilities
  • Preparing a laptop for forensic readiness
  • Understanding chain of custody and legal implications

Forensics on Disks and File Systems

  • Techniques for disk acquisition and imaging
  • File system analysis using Autopsy and Sleuth Kit
  • Recovery of deleted files and concealed data

Memory and Process Examination

  • Capturing volatile memory states
  • Investigating running processes and malware presence
  • Utilizing Volatility for detailed memory analysis

Network Forensics

  • Capture of live network traffic
  • Packet analysis using Wireshark and tcpdump
  • Tracking intrusion activities and lateral movement

Analysis of Logs and Artifacts

  • Review of system and application logs
  • Identification of artifacts indicating compromise
  • Conducting timeline analysis of incidents

Incident Investigation Workflow

  • Acquisition and validation of evidence
  • Step-by-step investigation methodology
  • Documenting findings for key stakeholders

Advanced Tools and Techniques

  • Mobile device forensic tools available in Kali
  • Analysis of steganography and encryption
  • Automating forensic tasks through scripting

Summary and Future Directions

Requirements

  • Fundamental knowledge of the Linux command line
  • General familiarity with cybersecurity principles
  • Practical experience in incident response or IT security operations

Intended Audience

  • Digital forensic investigators
  • Members of incident response teams
  • IT security professionals
 21 Hours

Number of participants


Price per participant

Upcoming Courses

Related Categories