|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/surviving-digital-forensics-memory-analysis-2/
课程评论:没有评论
**课程名称:** SDF: Memory Forensics 2 (SJF: 内存取证 2) **课程概述:** 本课程将教授您如何使用Volatility脚本化内存取证过程,并进行恶意软件感染评估。您将获得实际操作经验,通过分析内存镜像来寻找存在感染的证据。课程将一步步指导您如何自动化内存取证处理流程以及如何解读分析结果。学完本课程后,您将掌握一套高效的取证工具和方法论,可应用于任何Windows内存取证检查。 **主要学习内容:** * 使用Volatility进行内存取证。 * 学习如何使用和组合插件结果来识别恶意软件。 * 学习如何创建脚本来自动化运行插件和后期处理数据。 * 学习如何运行和解读插件。 * 通过实践操作巩固学习成果。 * 使用所有免费可用的工具,课程时长约一小时。
Learn to script Volatility and conduct a malware compromise assessment.This class provides you with hands on training working with a memory image in order to find evidence of compromise. Step-by-step the course teaches students how to automate memory forensic processing as well as how to interpret the findings. By the end of the course students will have an efficient forensic tool and methodology that may be used for any windows memory forensic exam. This class teaches students how to conduct memory forensics using Volatility.Learn how to use & combine plugin results to identify malwareLearn how to create a script to automate running plugins and post-processing data refinementLearn how to run and interpret pluginsHands-on practicals reinforce learningLearn all of this in about one hour using all freely available tools.