Skip to main content
  • Textbook
  • © 2018

Introductory Computer Forensics

A Hands-on Practical Approach

Authors:

  • Ties theory with hands-on lab exercises, helping students gain a better understanding of digital forensics, gaining hands-on experience in collecting and preserving digital evidence

  • Covers more than 20 topics in digital forensics, all of which stand on their own and not dependent on previous parts. This independence gives instructors flexibility in determining what parts from the text they want to cover and in what order

  • Each forensic topic is composed of two parts: background knowledge and practical exercises. Each theoretical or background section concludes with a series of quiz questions to test students’ understanding of the material, while the practical exercises are intended to afford students the opportunity to apply the concepts introduced in the section of background knowledge and for self-assessment

Buy it now

Buying options

eBook USD 89.00
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Hardcover Book USD 119.99
Price excludes VAT (USA)
  • Durable hardcover edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Other ways to access

This is a preview of subscription content, log in via an institution to check for access.

Table of contents (21 chapters)

  1. Front Matter

    Pages i-xxiii
  2. Fundamentals of Computer Systems and Computer Forensics

    1. Front Matter

      Pages 1-1
    2. Introduction to Computer Forensics

      • Xiaodong Lin
      Pages 3-36
    3. Introduction to Computer Organization

      • Xiaodong Lin
      Pages 37-52
    4. Building a Forensics Workstation

      • Xiaodong Lin
      Pages 53-89
  3. File System Forensic Analysis

    1. Front Matter

      Pages 91-91
    2. Volume Analysis

      • Xiaodong Lin
      Pages 93-114
    3. Examining FAT File System

      • Xiaodong Lin
      Pages 115-144
    4. Deleted File Recovery in FAT

      • Xiaodong Lin
      Pages 145-161
    5. Examining NTFS File System

      • Xiaodong Lin
      Pages 163-197
    6. Deleted File Recovery in NTFS

      • Xiaodong Lin
      Pages 199-210
    7. File Carving

      • Xiaodong Lin
      Pages 211-233
    8. File Signature Searching Forensics

      • Xiaodong Lin
      Pages 235-244
    9. Keyword Forensics

      • Xiaodong Lin
      Pages 245-255
    10. Timeline Analysis

      • Xiaodong Lin
      Pages 257-269
    11. Data Hiding and Detection

      • Xiaodong Lin
      Pages 271-301
  4. Forensic Log Analysis

    1. Front Matter

      Pages 303-303
    2. Log Analysis

      • Xiaodong Lin
      Pages 305-332
  5. Mobile Device Forensics

    1. Front Matter

      Pages 333-333
    2. Android Forensics

      • Xiaodong Lin
      Pages 335-371

About this book

This textbook provides an introduction to digital forensics, a rapidly evolving field for solving crimes. Beginning with the basic concepts of computer forensics, each of the book’s 21 chapters focuses on a particular forensic topic composed of two parts: background knowledge and hands-on experience through practice exercises. Each theoretical or background section concludes with a series of review questions, which are prepared to test students’ understanding of the materials, while the practice exercises are intended to afford students the opportunity to apply the concepts introduced in the section on background knowledge.

 This experience-oriented textbook is meant to assist students in gaining a better understanding of digital forensics through hands-on practice in collecting and preserving digital evidence by completing various exercises. With 20 student-directed, inquiry-based practice exercises, students will better understand digital forensic concepts and learn digital forensic investigation techniques.

 This textbook is intended for upper undergraduate and graduate-level students who are taking digital-forensic related courses or working in digital forensics research. It can also be used by digital forensics practitioners, IT security analysts, and security engineers working in the IT security industry, particular IT professionals responsible for digital investigation and incident handling or researchers working in these related fields as a reference book.

   

Authors and Affiliations

  • Department of Physics and Computer Science, Faculty of Science, Wilfrid Laurier University, Waterloo, Canada

    Xiaodong Lin

About the author

Xiaodong Lin received the PhD degree in Information Engineering from Beijing University of Posts and Telecommunications, China, and the PhD degree (with Outstanding Achievement in Graduate Studies Award) in Electrical and Computer Engineering from the University of Waterloo, Canada. He is currently working as an Associate Professor in the School of Computer Science at the University of Guelph, Canada. His research interests include wireless communications and network security, computer forensics, software security, and applied cryptography. With the increasing advance of wireless technology and the worldwide wireless network deployment, wireless networks have been on an upswing to enable ubiquitous Internet access. Making these wireless networks secure has become a major priority to keep our cyber world safe. In the past years, his research has focused on securing vehicular ad-hoc networks (VANETs), which is an emerging wireless network paradigm. He is elevated to IEEE Fellow for his contributions in secure and privacy-preserving vehicular communications. Also, He has been researching digital forensics extensively. For example, his work on automated forensic analysis of Android applications appears at DFRWS USA 2018, a top research conference in the field of digital forensics.

Dr. Lin serves as an Associate Editor for many international journals. He has served or is serving as a guest editor for many special issues of IEEE, Elsevier and Springer journals and as a symposium chair or track chair for IEEE/ACM conferences. He also served on many program committees. He was Chair of Communications and Information Security Technical Committee (CISTC) (2016-2017), IEEE Communications Society (ComSoc). He is a Fellow of the IEEE. He is also a CISSP (Certified Information Systems Security Professional).

Bibliographic Information

  • Book Title: Introductory Computer Forensics

  • Book Subtitle: A Hands-on Practical Approach

  • Authors: Xiaodong Lin

  • DOI: https://doi.org/10.1007/978-3-030-00581-8

  • Publisher: Springer Cham

  • eBook Packages: Computer Science, Computer Science (R0)

  • Copyright Information: Springer Nature Switzerland AG 2018

  • Hardcover ISBN: 978-3-030-00580-1Published: 19 November 2018

  • eBook ISBN: 978-3-030-00581-8Published: 10 November 2018

  • Edition Number: 1

  • Number of Pages: XXIII, 577

  • Number of Illustrations: 112 b/w illustrations, 347 illustrations in colour

  • Topics: Security, Forensic Science, Cybercrime, Systems and Data Security, Multimedia Information Systems

Buy it now

Buying options

eBook USD 89.00
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Hardcover Book USD 119.99
Price excludes VAT (USA)
  • Durable hardcover edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Other ways to access