Amazing technological breakthrough possible @S-Logix pro@slogix.in

Office Address

  • #5, First Floor, 4th Street Dr. Subbarayan Nagar Kodambakkam, Chennai-600 024 Landmark : Samiyar Madam
  • pro@slogix.in
  • +91- 81240 01111

Social List

The Art of Memory Forensics: Detecting Malware and Threats in Windows, Linux, and Mac Memory

The Art of Memory Forensics: Detecting Malware and Threats in Windows, Linux, and Mac Memory

Hot Research Book in The Art of Memory Forensics: Detecting Malware and Threats in Windows, Linux, and Mac Memory

Author(s) Name:  Michael Hale Ligh, Andrew Case, Jamie Levy, AAron Walters

About the Book:

   Memory forensics provides cutting edge technology to help investigate digital attacks Memory forensics is the art of analyzing computer memory (RAM) to solve digital crimes. As a follow-up to the best seller Malware Analyst-s Cookbook, experts in the fields of malware, security, and digital forensics bring you a step-by-step guide to memory forensics—now the most sought after skill in the digital forensics and incident response fields.
   Beginning with introductory concepts and moving toward the advanced, The Art of Memory Forensics: Detecting Malware and Threats in Windows, Linux, and Mac Memory is based on a five day training course that the authors have presented to hundreds of students. It is the only book on the market that focuses exclusively on memory forensics and how to deploy such techniques properly.

Table of Contents

  • 1 Systems Overview
  • 2 Data Structures
  • 3 The Volatility Framework
  • 4 Memory Acquisition
  • 5 Windows Objects and Pool Allocations
  • 6 Processes, Handles, and Tokens
  • 7 Process Memory Internals
  • 8 Hunting Malware in Process Memory
  • 9 Event Logs
  • 10 Registry in Memory
  • 11 Networking
  • 12 Windows Services
  • 13 Kernel Forensics and Rootkits
  • 14 Windows GUI Subsystem, Part I
  • 15 Windows GUI Subsystem, Part II
  • ISBN:  9781118825099

    Publisher:  John Wiley & Sons

    Year of Publication:  2014

    Book Link:  Home Page Url