Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
SDF: Memory Forensics 1
Rating: 4.5 out of 5(593 ratings)
3,142 students
Created byMichael Leclair
Last updated 2/2019
English

What you'll learn

  • Learn how to use Volatility
  • Learn to do a fast-triage compromise assessment
  • Understand plugin output for investigations
  • Learn the value of Windows core processes for exams

Course content

6 sections43 lectures1h 45m total length
  • Welcome & Introduction0:32

    Welcome to SDF: Memory Analysis 1. This section introduces you to the class.

  • Class outline2:30

    Class curriculum overview.

  • Class setup2:16

    This section covers what you need for the class.

  • Setup information0:13

    Information on how to set up a sift workstation.

  • Class Downloads0:06

    Sample artifacts to use during the course.

Requirements

  • Students need PC, Mac or Linux system (virtual machine preferred)
  • Willingness to learn!

Description

*** COURSE COMPLETELY REWRITTEN AND UPDATED 2019 ***

Learn to use Volatility to conduct a fast-triage compromise assessment.

A system's memory contains an assortment of valuable forensic data. Memory forensics can uncover evidence of compromise, malware, data spoliation and an assortment of file use and knowledge evidence - valuable skills for both incident response triage work as well as in digital forensic exams involving litigation.

This class teaches students how to conduct memory forensics using Volatility.

  • Learn how to do a fast-triage compromise assessment

  • Learn how to work with raw memory images, hibernation files and VM images

  • Learn how to run and interpret plugins

  • Hands-on practicals reinforce learning

  • Learn all of this in about one hour using all freely available tools.

Who this course is for:

  • Computer forensic examiners
  • Computer crime investigators
  • Computer security incident responders
  • Security analysts
  • IT professionals
  • Students