Software forensics - analyzing program code to track, identify, and prosecute computer virus perpetrators - has emerged as one of the most promising and technically challenging aspects of information management and security. This is a technical tutorial that thoroughly examines the programming tools, investigative and analysis methods, and legal implications of the complex evidence chain. Also included are eye-opening case studies, including the famous Enron case, and sample code from real criminal investigations. Written by a security consultant whose clients include the Canadian Government, "Software Forensics" covers: basic concepts; hackers, crackers, and phreaks; objects of analysis: text strings, source code, machine code; user interfaces and commands; program structures and versions; virus families; function indicators; stylistic analysis; and much more. There is no better or faster way for programmers, security analysts and consultants, security officers in the enterprise, application developers, lawyers, judges, and anyone else interested in software forensics to get up to speed on forensic programming tools and methods and the nature of cyber evidence.
Rezensionen / Stimmen
Excerpts from review by David Bianco... ...Robert Slade's reference is an...overview aimed at the beginning practitioner, law enforcement officer and legal professional. Software Forensics standout feature is a categorized list of references, which provides expert guidance and commentary on books, research papers, Web sites and tools that every forensic programmer should be familiar with. ... ...an excellent choice for those...who need to understand digital forensics issues at a nontechnical level. Information Security Magazine 20040701
Sprache
Verlagsort
Verlagsgruppe
McGraw-Hill Education - Europe
Zielgruppe
Illustrationen
Maße
Höhe: 235 mm
Breite: 186 mm
Dicke: 17 mm
Gewicht
ISBN-13
978-0-07-142804-0 (9780071428040)
Copyright in bibliographic data and cover images is held by Nielsen Book Services Limited or by the publishers or by their respective licensors: all rights reserved.
Schweitzer Klassifikation
Robert M. Slade has been a security consultant since 1987, working for some of the best-known Fortune 500 companies, and the government of Canada. The author of Robert Slade's Guide to Computer Viruses, and co-author of Viruses Revealed, he also teaches. He has prepared curricula and taught courses for Simon Fraser University, MacDonald Dettwiler and Associates, Ltd., and the University of Phoenix, among others. He is a CISSP (Certified Information Systems Security Practitioner) trainer and a specialist in malware.
INTRODUCTIONChapter 1: Introduction to Software ForensicsChapter 2: The Players--Hackers, Crackers, Phreaks, and Other DoodzChapter 3: Software Codes and Analysis ToolsChapter 4: Advanced ToolsChapter 5: Law and Ethics--Software Forensics in CourtChapter 6: Computer Virus and Malware Concepts and BackgroundChapter 7: Programming Cultures and IndicatorsChapter 8: Stylistic Analysis and Linguistic ForensicsChapter 9: Authorship AnalysisREFERENCES AND RESOURCESINDEX