YoVDO

OS Analysis with The Sleuth Kit & Autopsy

Offered By: Pluralsight

Tags

Digital Forensics Courses Incident Response Courses Security Analysis Courses Threat Hunting Courses Process Injection Courses

Course Description

Overview

In this course you will learn how to parse file systems and extract forensic artifacts that can be invaluable to
incident responders, security analysts, and threat hunters.


Being able to effectively analyze digital evidence and extract indicators of compromise is incredibly important. In fact, it’s crucial to properly scoping an incident and creating robust detection logic to prevent and detect future attacks. In this course, OS Analysis with The Sleuth Kit & Autopsy, you’ll cover how to utilize Sleuth Kit and Autopsy to detect process injection and artifact obfuscation in an enterprise environment. First, you’ll demonstrate how to detect process injection techniques such as process hollowing and injection. Next, you’ll operate identifying and detecting artifact obfuscation. When you’re finished with this course, you’ll have the skills and knowledge to detect these techniques, Process Inject (T1055) and Artifact Obfuscation (T1027) using Sleuth Kit and Autopsy.

Syllabus

  • Course Overview 1min
  • OS Analysis with Sleuth Kit and Autopsy 13mins
  • Resources 1min

Taught by

Ashley Pearson

Related Courses

Foundations of Computer Science for Teachers
The University of Texas at Austin via edX
Computer Forensics
Rochester Institute of Technology via edX
FinTech Security and Regulation (RegTech)
The Hong Kong University of Science and Technology via Coursera
Cyber Security
CEC via Swayam
Fundamentos de Ciberseguridad: un enfoque práctico
Inter-American Development Bank via edX