Get in Touch

Course Outline

Foundations of Kali Linux in Forensics

  • Overview of Kali Linux and its forensic potential
  • Setting up a forensic-capable laptop
  • Understanding chain of custody and legal implications

Storage Drive and File System Forensics

  • Acquiring and creating images of disks
  • Examining file systems using Autopsy and Sleuth Kit
  • Restoring deleted files and uncovering hidden data

Memory and Process Examination

  • Acquiring volatile memory states
  • Investigating active processes and malware presence
  • Leveraging Volatility for detailed memory analysis

Network Forensics

  • Recording live network traffic
  • Inspecting packets with Wireshark and tcpdump
  • Tracking intrusion paths and lateral movement tactics

Log and Artifact Examination

  • Analyzing system and application logs
  • Detecting signs of system compromise
  • Conducting timeline analysis of incidents

Incident Investigation Procedures

  • Collecting and verifying evidence
  • Applying a structured investigation methodology
  • Documenting outcomes for key stakeholders

Advanced Utilities and Methods

  • Forensic tools for mobile devices within Kali
  • Analyzing steganography and encryption methods
  • Automating forensic workflows through scripting

Conclusion and Future Directions

Requirements

  • Foundational knowledge of the Linux command line
  • Understanding of core cybersecurity principles
  • Background in incident response or IT security operations

Target Audience

  • Digital forensic specialists
  • Members of incident response teams
  • IT security practitioners
 21 Hours

Number of participants


Price per participant

Upcoming Courses

Related Categories