OS X Incident Response

Scripting and Analysis

Nonfiction, Computers, Networking & Communications, Computer Security, Operating Systems, General Computing
Cover of the book OS X Incident Response by Jaron Bradley, Elsevier Science
View on Amazon View on AbeBooks View on Kobo View on B.Depository View on eBay View on Walmart
Author: Jaron Bradley ISBN: 9780128045039
Publisher: Elsevier Science Publication: May 7, 2016
Imprint: Syngress Language: English
Author: Jaron Bradley
ISBN: 9780128045039
Publisher: Elsevier Science
Publication: May 7, 2016
Imprint: Syngress
Language: English

OS X Incident Response: Scripting and Analysis is written for analysts who are looking to expand their understanding of a lesser-known operating system. By mastering the forensic artifacts of OS X, analysts will set themselves apart by acquiring an up-and-coming skillset.

Digital forensics is a critical art and science. While forensics is commonly thought of as a function of a legal investigation, the same tactics and techniques used for those investigations are also important in a response to an incident. Digital evidence is not only critical in the course of investigating many crimes but businesses are recognizing the importance of having skilled forensic investigators on staff in the case of policy violations.

Perhaps more importantly, though, businesses are seeing enormous impact from malware outbreaks as well as data breaches. The skills of a forensic investigator are critical to determine the source of the attack as well as the impact. While there is a lot of focus on Windows because it is the predominant desktop operating system, there are currently very few resources available for forensic investigators on how to investigate attacks, gather evidence and respond to incidents involving OS X. The number of Macs on enterprise networks is rapidly increasing, especially with the growing prevalence of BYOD, including iPads and iPhones.

Author Jaron Bradley covers a wide variety of topics, including both the collection and analysis of the forensic pieces found on the OS. Instead of using expensive commercial tools that clone the hard drive, you will learn how to write your own Python and bash-based response scripts. These scripts and methodologies can be used to collect and analyze volatile data immediately.

For online source codes, please visit:

https://github.com/jbradley89/osx_incident_response_scripting_and_analysis

  • Focuses exclusively on OS X attacks, incident response, and forensics
  • Provides the technical details of OS X so you can find artifacts that might be missed using automated tools
  • Describes how to write your own Python and bash-based response scripts, which can be used to collect and analyze volatile data immediately
  • Covers OS X incident response in complete technical detail, including file system, system startup and scheduling, password dumping, memory, volatile data, logs, browser history, and exfiltration
View on Amazon View on AbeBooks View on Kobo View on B.Depository View on eBay View on Walmart

OS X Incident Response: Scripting and Analysis is written for analysts who are looking to expand their understanding of a lesser-known operating system. By mastering the forensic artifacts of OS X, analysts will set themselves apart by acquiring an up-and-coming skillset.

Digital forensics is a critical art and science. While forensics is commonly thought of as a function of a legal investigation, the same tactics and techniques used for those investigations are also important in a response to an incident. Digital evidence is not only critical in the course of investigating many crimes but businesses are recognizing the importance of having skilled forensic investigators on staff in the case of policy violations.

Perhaps more importantly, though, businesses are seeing enormous impact from malware outbreaks as well as data breaches. The skills of a forensic investigator are critical to determine the source of the attack as well as the impact. While there is a lot of focus on Windows because it is the predominant desktop operating system, there are currently very few resources available for forensic investigators on how to investigate attacks, gather evidence and respond to incidents involving OS X. The number of Macs on enterprise networks is rapidly increasing, especially with the growing prevalence of BYOD, including iPads and iPhones.

Author Jaron Bradley covers a wide variety of topics, including both the collection and analysis of the forensic pieces found on the OS. Instead of using expensive commercial tools that clone the hard drive, you will learn how to write your own Python and bash-based response scripts. These scripts and methodologies can be used to collect and analyze volatile data immediately.

For online source codes, please visit:

https://github.com/jbradley89/osx_incident_response_scripting_and_analysis

More books from Elsevier Science

Cover of the book Bio-optical Modeling and Remote Sensing of Inland Waters by Jaron Bradley
Cover of the book Studies in Natural Products Chemistry by Jaron Bradley
Cover of the book Advances in Atomic Spectroscopy by Jaron Bradley
Cover of the book Phase Transformations in Steels by Jaron Bradley
Cover of the book Dynamics of Bone and Cartilage Metabolism by Jaron Bradley
Cover of the book Handbook of Proteolytic Enzymes by Jaron Bradley
Cover of the book Networked Control Systems by Jaron Bradley
Cover of the book Carbonate Reservoirs by Jaron Bradley
Cover of the book Neuropathology of Drug Addictions and Substance Misuse Volume 3 by Jaron Bradley
Cover of the book Electrocorrosion and Protection of Metals by Jaron Bradley
Cover of the book Handbook of Neurolinguistics by Jaron Bradley
Cover of the book Advances in Child Development and Behavior by Jaron Bradley
Cover of the book Guide to Essential Math by Jaron Bradley
Cover of the book Oxidation in Foods and Beverages and Antioxidant Applications by Jaron Bradley
Cover of the book Visual Usability by Jaron Bradley
We use our own "cookies" and third party cookies to improve services and to see statistical information. By using this website, you agree to our Privacy Policy