Saltar al contenido principal

Integrating Python with Leading Computer Forensics Platforms

  • 1 Edición - 23 de septiembre de 2016
  • Última edición
  • Autor: Chet Hosmer
  • Idioma: Inglés

Integrating Python with Leading Computer Forensic Platforms takes a definitive look at how and why the integration of Python advances the field of digital forensics. In addition,… Leer más

Descripción

Integrating Python with Leading Computer Forensic Platforms takes a definitive look at how and why the integration of Python advances the field of digital forensics. In addition, the book includes practical, never seen Python examples that can be immediately put to use. Noted author Chet Hosmer demonstrates how to extend four key Forensic Platforms using Python, including EnCase by Guidance Software, MPE+ by AccessData, The Open Source Autopsy/SleuthKit by Brian Carrier and WetStone Technologies, and Live Acquisition and Triage Tool US-LATT. This book is for practitioners, forensic investigators, educators, students, private investigators, or anyone advancing digital forensics for investigating cybercrime.

Additionally, the open source availability of the examples allows for sharing and growth within the industry. This book is the first to provide details on how to directly integrate Python into key forensic platforms.

Puntos claves

  • Provides hands-on tools, code samples, detailed instruction, and documentation that can be immediately put to use
  • Shows how to integrate Python with popular digital forensic platforms, including EnCase, MPE+, The Open Source Autopsy/SleuthKit, and US-LATT
  • Presents complete coverage of how to use Open Source Python scripts to extend and modify popular digital forensic Platforms

De interès para

Digital forensic professionals and analysts, information security professionals, researchers, and practitioners, legal professionals, law enforcement officers, as well as students in digital forensics criminal justice programs at university

Índice

  • Dedication
  • Author Biography
  • Preface
  • Acknowledgments
  • Chapter 1: Integrating Python With Forensics Platforms
    • Abstract
    • Introduction
    • What Is the Python Value Proposition for Forensics?
    • Resources
    • What Are the Possible Integration Points and Methods?
    • Why Open Source?
    • What Forensic Platforms Are Covered?
    • Keys to Success
    • Review
  • Chapter 2: Key Python Language Elements for Forensics
    • Abstract
    • Introduction
    • Quick Overview of the Python Environment
    • Python Forensics Source Code Template SRC-2-1.py
    • Basic Forensic Script SRC-2-2.py
    • Review
    • Challenge Problems
  • Chapter 3: Integrating Python With MPE+
    • Abstract
    • Introduction
    • Building and MPE+ Python Template
    • Creating a HashSearch MPE+ Python Script
    • Review
    • Challenge Problems
  • Chapter 4: Integrating Python With EnCase/EnScripts
    • Abstract
    • Introduction
    • EnCase Integration Points
    • Review
    • Challenge Problems
  • Chapter 5: Integrating Python With Leading Forensic Platforms
    • Abstract
    • Introduction
    • Postprocessing of US-LATT Acquisition
    • Review
    • Challenge Problems
  • Chapter 6: Integrating Python With Leading Forensic Platforms
    • Abstract
    • Introduction
    • Integrating Python With Autopsy
    • Review
    • Challenge Problems
  • Chapter 7: Future Look and an Integration Challenge Problem
    • Abstract
    • The Future
    • Review
  • Index

Detalles del producto

  • Edición: 1
  • Última edición
  • Publicado: 26 de septiembre de 2016
  • Idioma: Inglés

Sobre el autor

CH

Chet Hosmer

Chet Hosmer is a retired Assistant Professor of Practice at the University of Arizona and now serves as a Designated Campus Colleague. He previously taught in the Cybersecurity Graduate Program at Utica College and is the founder of Python Forensics, a nonprofit research and educational institution dedicated to advancing investigative capabilities through innovative research and specialized Python tools.

A recognized authority on emerging cyber threats, Chet has been featured by NPR, ABC News, Forbes, IEEE, The New York Times, The Washington Post, Government Computer News, Salon, and Wired. He is the author of seven books published by Elsevier and Apress covering passive cyber defense for OT environments, Python and PowerShell for investigators, data hiding and steganography, and IoT security. He has also delivered Congressional testimony before the House Science Committee on cybersecurity education.

Afiliaciones y experiencia
President, Python Forensics, Inc.Assistant Professor, University of Arizona, Arizona, USA

Ver libro en ScienceDirect

Lee Integrating Python with Leading Computer Forensics Platforms en ScienceDirect