East Baton Rouge Parish Library

The art of memory forensics, detecting malware and threats in Windows, Linux, and Mac memory, [by] Michael Hale Ligh, Andrew Case, Jamie Levy, [and] Aaron Walters

Label
The art of memory forensics, detecting malware and threats in Windows, Linux, and Mac memory, [by] Michael Hale Ligh, Andrew Case, Jamie Levy, [and] Aaron Walters
Language
eng
Bibliography note
Includes index
Illustrations
illustrations
Index
no index present
Literary Form
non fiction
Main title
The art of memory forensics
Nature of contents
dictionaries
Oclc number
1906040985
Responsibility statement
[by] Michael Hale Ligh, Andrew Case, Jamie Levy, [and] Aaron Walters
Sub title
detecting malware and threats in Windows, Linux, and Mac memory
Summary
"The Art of Memory Forensics" is a practical guide to the rapidly emerging investigative technique for digital forensics, incident response, and law enforcement. Memory forensics has become a must-have skill for combating the next era of advanced malware, targeted attacks, security breaches, and online crime. As breaches and attacks become more sophisticated, analyzing volatile memory becomes ever more critical to the investigative process. This book provides a comprehensive guide to performing memory forensics for Windows, Linux, and Mac systems, including x64 architectures. Based on the authors' popular training course, coverage includes memory acquisition, rootkits, tracking user activity, and more, plus case studies that illustrate the real-world application of the techniques presented. Bonus materials include industry-applicable exercises, sample memory dumps, and cutting-edge memory forensics software. Memory forensics is the art of analyzing RAM to solve digital crimes. Conventional incident response often overlooks volatile memory, which contains crucial information that can prove or disprove the system's involvement in a crime, and can even destroy it completely. By implementing memory forensics techniques, analysts are able to preserve memory resident artifacts which often provides a more efficient strategy for investigating modern threats
resource.variantTitle
Detecting malware and threats in Windows, Linux, and Mac memory