Transcription of Live Forensics Using WFT - Fool Moon
{{id}} {{{paragraph}}}
1 live Forensics on a Windows System -- 2003-2006 Monty McDougal 1 live Forensics on a Windows System: Using Windows forensic Toolchest (WFT)By Monty Forensics on a Windows System: Using Windows forensic Toolchest (WFT)By Monty forensic Toolchest (WFT) and this presentation are Copyright 2003-2006 Monty McDougal. All rights Forensics on a Windows System -- 2003-2006 Monty McDougal 2 Agenda forensic Fundamentals Traditional Forensics live Forensics forensic Response Principles forensic Response Toolkits Windows forensic Toolchest (WFT) Benefits Usage WFT In Action (Demo)This Page Intentionally Blank3 live Forensics on a Windows System -- 2003-2006 Monty McDougal 3 forensic FundamentalsThis Page Intentionally Blank4 live Forensics on a Windows System -- 2003-2006 Monty McDougal 4 System Forensics "Gathering and analyzing data in a manner as free from distortion or bias as possible to reconstruct dat
Live forensics is the focus of this talk, but specifically in conjunction with the Windows Forensic Toolchest (WFT). The goal of any live forensics task should be to extract and preserve the volatile data on a system while, to the extent possible, otherwise preserving the state of the system.
Domain:
Source:
Link to this page:
Please notify us if you found a problem with this document:
{{id}} {{{paragraph}}}