This bundle includes the following courses
-
-
Keep Learning DFIR – Your Way!
-
Before You Start (Beginning of the Course)
-
-
-
What is Digital Forensics
-
Digital Forensics Investigation
-
What is the Digital Evidence
-
Digital Devices
-
Legal Aspects
-
Types of Digital Forensic Investigation
-
Challenges of Digital Forensics
-
Conclusion
-
How to set up your Windows VM - VMware
-
How to set up your Windows VM - VBox
-
Check Your Module's Knowledge
-
References
-
Have a Question?!
-
-
-
Hard Disk - Physical & Logical Drive
-
Virtual Hard Disk (VHD)
-
Creating Virtual Hard Disk
-
Creating Virtual Hard Disk with Two Partitions
-
Required Files -- Attaching and Detaching Virtual Hard Disk
-
Attaching and Detaching Virtual Hard Disk
-
Exercise #1
-
Solutions_Virtual_Hard_Disk
-
Summary
-
Check Your Module's Knowledge
-
Have a Question?!
-
-
-
Data Acquisition Concepts
-
Data Validation
-
Acquisition Methods
-
Forensic Image File Formats
-
The Importance of Evidence Acquisition
-
Must-Know First Response Actions
-
Required Files -- Sanitization of the Target Media
-
Sanitization of the Target Media
-
Hardwipe Tool
-
Cygwin Tools (dd Command in Windows)
-
Check Your Knowledge
-
Exercise #1
-
Exercise #1 Solution
-
Required Files -- Acquisition Tools
-
Evidence Data Acquisition
-
Memory Dump
-
Tools for Memory Dump
-
Disk Drive Imaging
-
Other Forensic Tools
-
Exercise #2
-
Solution_Exercise#2
-
Examples of Hardware Acquisition Tools
-
Using UltraDock Write-Blocker
-
Required Files - Mounting a Forensic Image
-
Introduction to Image Mounting
-
Arsenal Image Mounter
-
OSFMount
-
Other Forensic Image Mounting Tools
-
Exercise#3
-
Solution_Exercise#3
-
Summary
-
References
-
Have a Question?!
-
-
-
Introduction to Forensic Toolkit Imager
-
Required Files -- Introduction
-
Required Files -- Installation of FTK Imager
-
Install FTK Locally
-
Install FTK on a Portable Device (USB)
-
Required Files -- Evidence Acquisition
-
Digital Evidence Acquisition
-
Memory Acquisition
-
Disk Acquisition
-
Exercise #1
-
Solutions Exercise #1
-
Required Files -- Attach an Evidence Item
-
Add Evidence Item to FTK Imager
-
Create and Verify a Multi-Part Disk Images
-
Loading a Multi-Part Disk Image
-
Required Files -- Evidence Analysis
-
Evidence Analysis
-
Exporting Data using FTK Imager
-
Detect EFS Encryption
-
Exercise #2
-
Solution Exercise #2
-
Acquiring Protected Registry Files
-
Copying Registry Files
-
Required Files -- Interpreter in FTK
-
Interpreter
-
Exercise #3
-
Solution Exercise #3
-
Required Files -- Create Images with Advanced Features
-
Custom Content Images
-
AD Encryption
-
Exercise #4
-
Solution Exercise #4
-
Required Files -- Image Mounting
-
Image Mounting
-
Steps of Image Mounting
-
Mount Multi-Part Raw Disk Image with FTK
-
Summary
-
Have a Question?!
-
-
-
Introduction to Data Representation
-
Numbering Systems
-
Decimal Number System (Base 10)
-
Binary System (Base 2)
-
Hexadecimal (Base 16)
-
Octal (Base 8)
-
Byte Ordering
-
Introduction to Text Code
-
ASCII Code
-
Unicode
-
Exercises
-
Solutions
-
Have a Question?!
-

About this course
- Free
- 219 lessons
Pricing Options
The course is completely FREE, and you can learn and practice using your own workstation. However, if you prefer a virtual environment to practice in, you have the option to purchase a subscription to access an online lab environment dedicated just for you. Choose the enrollment option that works best for you. If you’re enrolling as a group or need a customized plan, feel free to contact us, we’re here to assist!
-
C5W-100 INTRODUCTION TO DIGITAL FORENSICS
No virtual lab access
Free
Enroll Now -
C5W-100 INTRODUCTION TO DIGITAL FORENSICS
Optional - Only if you need a virtual lab access!
Includes 20 hours of virtual lab access!
$50.00
Buy Now
Learning Outcomes
After completing this course, you will learn the following.
-
Understand the concepts of digital forensics and investigation
-
Understand the evidence acquisition and how to acquire evidence under Windows
-
Master FTK Imager usage
-
Learn how data is represented on computers
-
Understand files and headers
-
Become familiar with the basics of file systems and learn how to carve data
-
Master time zones and date analysis
-
Learn how to write forensic reports
Technical Requirements
To complete the hands-on labs of this track
-
Basic knowledge of using a Virtual Machine
-
Windows 10 operating system (recommended)
What is next at Cyber 5W?
Add your email to receive updates on new courses.