Recommend Computer Forensics Books

mt_100

Limp Gawd
Joined
Jan 15, 2006
Messages
342
Looking to learn more about computer forensics, specifically crime investigation, data recovery, and hacking.

Looking for books with a good technical background and technical how to aimed at computer professionals. Web sites that have good information would be good too.

Anyone know of some good reads?
 
As an Amazon Associate, HardForum may earn from qualifying purchases.
Linux has tons of free apps for these kind of things. It is a good idea to learn Linux if you are into this. Instead of listing all the apps, have you looked into Helix3 distro? Play with the apps and go over the docs.
 
Linux has tons of free apps for these kind of things. It is a good idea to learn Linux if you are into this. Instead of listing all the apps, have you looked into Helix3 distro? Play with the apps and go over the docs.

I agree that learning Helix and the OS's you'll need to gather evidence from is important, but I also think it's important to understand the basics of forensics. There's a lot of stuff that goes beyond just using Helix and other forensic tools (preserving the state of the drive, what's admissible in court, etc). If you know how to use the tools, then go to town on a drive and touch a bunch of files that shouldn't have been touched, you've just destroyed your evidence.

If this is something you're serious about, I would recommend reading the book and learning more, as well as learning about the tools involved. IIRC, Incident Response covers many of the tools as well.
 
Back
Top