The following labs introduce the learner to the legal and technical aspects of Digital Forensics, including general forensic processes, imaging, hashing, file recovery, file system basics, identifying mismatched file types, reporting, and laws regarding evidence:
- Introduction to File Systems
- Common Locations of Windows Artifacts
- Hashing Data Sets
- Drive Letter Assignments in Linux
- The Imaging Process
- Introduction to Single Purpose Forensic Tools
- Introduction to Autopsy Forensic Browser
- The FAT File System
- The NTFS File System
- Browser Artifact Analysis
- Communication Artifacts
- User Profiles and the Windows Registry
- Log Analysis
- Memory Analysis
- Forensic Case Capstone