Главная
Study mode:
on
1
Intro
2
Memory Acquisition - What?
3
Memory Forensics - Why?
4
Memory Acquisition Challenges
5
Memory Acquisition Options
6
Memory Acquisition Hardware
7
Memory Acquisition via Hardware: PCile
8
Memory Acquisition via Hardware: FireWire
9
Address Space Layout
10
Software Memory Acquisition - How?
11
Software Memory Acquisition: Considerations
12
Software Memory Acquisition: Tools
13
Virtual Machine Memory Acquisition
14
Crash Dumps
15
Hibernation Files
16
Cold-Boot Attacks
17
Anti-Forensic Avenues
18
What Can We Do?
19
Questions?
Description:
Explore memory acquisition techniques in digital forensics and incident response through this 47-minute conference talk. Delve into the fundamentals of memory forensics, addressing challenges and various acquisition options. Learn about hardware-based methods like PCIe and FireWire, as well as software-based approaches. Examine address space layout, virtual machine memory acquisition, crash dumps, and hibernation files. Discover cold-boot attacks and anti-forensic avenues, and gain insights on effective countermeasures. Enhance your understanding of this critical aspect of digital investigations and cybersecurity.

Memory Acquisition in Digital Forensics and Incident Response

Add to list