Get in Touch

Course Outline

Introduction to Kali Linux for Forensics

  • Overview of Kali Linux and its forensic capabilities
  • Preparing a forensic-ready laptop
  • Understanding chain of custody and legal implications

Disk and File System Forensics

  • Acquiring and imaging disks
  • Examining file systems using Autopsy and Sleuth Kit
  • Recovering deleted files and hidden data

Memory and Process Analysis

  • Capturing volatile memory
  • Investigating processes and malware
  • Utilizing Volatility for memory analysis

Network Forensics

  • Capturing live network traffic
  • Analyzing packets with Wireshark and tcpdump
  • Tracing intrusion activities and lateral movement

Log and Artifact Analysis

  • Reviewing system and application logs
  • Identifying artifacts of compromise
  • Conducting timeline analysis of incidents

Incident Investigation Workflow

  • Acquiring and validating evidence
  • Implementing a step-by-step investigation methodology
  • Documenting findings for stakeholders

Advanced Tools and Techniques

  • Mobile device forensic tools integrated into Kali
  • Analysis of steganography and encryption
  • Automating forensic tasks through scripting

Summary and Next Steps

Requirements

  • Fundamental knowledge of the Linux command line
  • Familiarity with core cybersecurity concepts
  • Practical experience in incident response or IT security operations

Target Audience

  • Digital forensic investigators
  • Members of incident response teams
  • IT security professionals
 21 Hours

Upcoming Courses

Related Categories