Items related to The Art of Memory Forensics: Detecting Malware and...

The Art of Memory Forensics: Detecting Malware and Threats in Windows, Linux, and Mac Memory - Softcover

  • 4.35 out of 5 stars
    123 ratings by Goodreads
 
9781118825099: The Art of Memory Forensics: Detecting Malware and Threats in Windows, Linux, and Mac Memory

Synopsis

Memory forensics provides cutting edge technology to help investigate digital attacks

Memory forensics is the art of analyzing computer memory (RAM) to solve digital crimes. As a follow-up to the best seller Malware Analyst's Cookbook, experts in the fields of malware, security, and digital forensics bring you a step-by-step guide to memory forensics―now the most sought after skill in the digital forensics and incident response fields.

Beginning with introductory concepts and moving toward the advanced, The Art of Memory Forensics: Detecting Malware and Threats in Windows, Linux, and Mac Memory is based on a five day training course that the authors have presented to hundreds of students. It is the only book on the market that focuses exclusively on memory forensics and how to deploy such techniques properly. Discover memory forensics techniques:

  • How volatile memory analysis improves digital investigations
  • Proper investigative steps for detecting stealth malware and advanced threats
  • How to use free, open source tools for conducting thorough memory forensics
  • Ways to acquire memory from suspect systems in a forensically sound manner

The next era of malware and security breaches are more sophisticated and targeted, and the volatile memory of a computer is often overlooked or destroyed as part of the incident response process. The Art of Memory Forensics explains the latest technological innovations in digital forensics to help bridge this gap. It covers the most popular and recently released versions of Windows, Linux, and Mac, including both the 32 and 64-bit editions.

"synopsis" may belong to another edition of this title.

About the Author

Michael Hale-Ligh is author of Malware Analyst's Cookbook, Secretary/Treasurer of Volatility Foundation, and a world-class reverse engineer.

Andrew Case is a Digital Forensics Researcher specializing in memory, disk, and network forensics.

Jamie Levy is a Senior Researcher and Developer, targeting memory, network, and malware forensics analysis.

AAron Walters is founder and lead developer of the Volatility Project, President of the Volatility Foundation, and Chair of Open Memory Forensics Workshop.

From the Back Cover

SOPHISTICATED DISCOVERY AND ANALYSIS FOR THE NEXT WAVE OF DIGITAL ATTACKS

The Art of Memory Forensics, a follow-up to the bestselling Malware Analyst’s Cookbook, is a practical guide to the rapidly emerging investigative technique for digital forensics, incident response, and law enforcement. Memory forensics has become a must-have skill for combating the next era of advanced malware, targeted attacks, security breaches, and online crime. As breaches and attacks become more sophisticated, analyzing volatile memory becomes ever more critical to the investigative process. This book provides a comprehensive guide to performing memory forensics for Windows, Linux, and Mac systems, including x64 architectures. Based on the authors’ popular training course, coverage includes memory acquisition, rootkits, tracking user activity, and more, plus case studies that illustrate the real-world application of the techniques presented. Bonus materials include industry-applicable exercises, sample memory dumps, and cutting-edge memory forensics software.

Memory forensics is the art of analyzing RAM to solve digital crimes. Conventional incident response often overlooks volatile memory, which contains crucial information that can prove or disprove the system’s involvement in a crime, and can even destroy it completely. By implementing memory forensics techniques, analysts are able to preserve memory resident artifacts which often provides a more efficient strategy for investigating modern threats.

In The Art of Memory Forensics, the Volatility Project’s team of experts provides functional guidance and practical advice that helps readers to:

  • Acquire memory from suspect systems in a forensically sound manner
  • Learn best practices for Windows, Linux, and Mac memory forensics
  • Discover how volatile memory analysis improves digital investigations
  • Delineate the proper investigative steps for detecting stealth malware and advanced threats
  • Use free, open source tools to conduct thorough memory forensics investigations
  • Generate timelines, track user activity, find hidden artifacts, and more

The companion website provides exercises for each chapter, plus data that can be used to test the various memory analysis techniques in the book. Visit our website at www.wiley.com/go/memoryforensics.

From the Inside Flap

SOPHISTICATED DISCOVERY AND ANALYSIS FOR THE NEXT WAVE OF DIGITAL ATTACKS

The Art of Memory Forensics, a follow-up to the bestselling Malware Analyst’s Cookbook, is a practical guide to the rapidly emerging investigative technique for digital forensics, incident response, and law enforcement. Memory forensics has become a must-have skill for combating the next era of advanced malware, targeted attacks, security breaches, and online crime. As breaches and attacks become more sophisticated, analyzing volatile memory becomes ever more critical to the investigative process. This book provides a comprehensive guide to performing memory forensics for Windows, Linux, and Mac systems, including x64 architectures. Based on the authors’ popular training course, coverage includes memory acquisition, rootkits, tracking user activity, and more, plus case studies that illustrate the real-world application of the techniques presented. Bonus materials include industry-applicable exercises, sample memory dumps, and cutting-edge memory forensics software.

Memory forensics is the art of analyzing RAM to solve digital crimes. Conventional incident response often overlooks volatile memory, which contains crucial information that can prove or disprove the system’s involvement in a crime, and can even destroy it completely. By implementing memory forensics techniques, analysts are able to preserve memory resident artifacts which often provides a more efficient strategy for investigating modern threats.

In The Art of Memory Forensics, the Volatility Project’s team of experts provides functional guidance and practical advice that helps readers to:

  • Acquire memory from suspect systems in a forensically sound manner
  • Learn best practices for Windows, Linux, and Mac memory forensics
  • Discover how volatile memory analysis improves digital investigations
  • Delineate the proper investigative steps for detecting stealth malware and advanced threats
  • Use free, open source tools to conduct thorough memory forensics investigations
  • Generate timelines, track user activity, find hidden artifacts, and more

The companion website provides exercises for each chapter, plus data that can be used to test the various memory analysis techniques in the book. Visit our website at www.wiley.com/go/memoryforensics.

"About this title" may belong to another edition of this title.

  • PublisherWiley
  • Publication date2014
  • ISBN 10 1118825098
  • ISBN 13 9781118825099
  • BindingPaperback
  • LanguageEnglish
  • Edition number1
  • Number of pages912
  • Rating
    • 4.35 out of 5 stars
      123 ratings by Goodreads

Buy Used

Condition: Good
There are tears on paperback. Cover...
View this item

US$ 3.99 shipping within U.S.A.

Destination, rates & speeds

Other Popular Editions of the Same Title

9788126552214: The Art of Memory Forensics: Detecting Malware and Threats in Windows, Linux and Mac Memory Paperback - 23 Sep 2014

Featured Edition

ISBN 10:  8126552212 ISBN 13:  9788126552214
Publisher: Wiley, 2014
Softcover

Search results for The Art of Memory Forensics: Detecting Malware and...

Stock Image

Hale Ligh, Michael; Case, Andrew; Levy, Jamie; Walters, AAron
Published by Wiley, 2014
ISBN 10: 1118825098 ISBN 13: 9781118825099
Used Softcover

Seller: Goodwill, Brooklyn Park, MN, U.S.A.

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Condition: Good. There are tears on paperback. Cover/Case has some rubbing and edgewear. Access codes, CDs, slipcovers and other accessories may not be included. Seller Inventory # 2Y6U1A000VRN_ns

Contact seller

Buy Used

US$ 20.68
Convert currency
Shipping: US$ 3.99
Within U.S.A.
Destination, rates & speeds

Quantity: 2 available

Add to basket

Stock Image

Walters, AAron,Levy, Jamie,Case, Andrew,Hale Ligh, Michael
Published by Wiley, 2014
ISBN 10: 1118825098 ISBN 13: 9781118825099
Used Paperback

Seller: HPB-Red, Dallas, TX, U.S.A.

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Paperback. Condition: Good. Connecting readers with great books since 1972! Used textbooks may not include companion materials such as access codes, etc. May have some wear or writing/highlighting. We ship orders daily and Customer Service is our top priority! Seller Inventory # S_427229519

Contact seller

Buy Used

US$ 22.12
Convert currency
Shipping: US$ 3.75
Within U.S.A.
Destination, rates & speeds

Quantity: 1 available

Add to basket

Seller Image

Hale Ligh, Michael; Case, Andrew; Levy, Jamie; Walters, AAron
Published by Wiley, 2014
ISBN 10: 1118825098 ISBN 13: 9781118825099
Used Softcover

Seller: Zoom Books East, Glendale Heights, IL, U.S.A.

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Condition: good. Book is in good condition and may include underlining highlighting and minimal wear. The book can also include "From the library of" labels. May not contain miscellaneous items toys, dvds, etc. . We offer 100% money back guarantee and 24 7 customer service. Seller Inventory # ZEV.1118825098.G

Contact seller

Buy Used

US$ 28.68
Convert currency
Shipping: FREE
Within U.S.A.
Destination, rates & speeds

Quantity: 1 available

Add to basket

Stock Image

Hale Ligh, Michael
Published by Wiley, 2014
ISBN 10: 1118825098 ISBN 13: 9781118825099
Used paperback First Edition

Seller: Textbooks_Source, Columbia, MO, U.S.A.

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

paperback. Condition: Good. 1st Edition. Ships in a BOX from Central Missouri! May not include working access code. Will not include dust jacket. Has used sticker(s) and some writing or highlighting. UPS shipping for most packages, (Priority Mail for AK/HI/APO/PO Boxes). Seller Inventory # 001668681U

Contact seller

Buy Used

US$ 38.14
Convert currency
Shipping: US$ 3.99
Within U.S.A.
Destination, rates & speeds

Quantity: 2 available

Add to basket

Stock Image

Hale Ligh, Michael
Published by John Wiley & Sons, Incorporated, 2014
ISBN 10: 1118825098 ISBN 13: 9781118825099
Used Softcover

Seller: TextbookRush, Grandview Heights, OH, U.S.A.

Seller rating 4 out of 5 stars 4-star rating, Learn more about seller ratings

Condition: Very Good. Ships SAME or NEXT business day. We Ship to APO/FPO addr. Choose EXPEDITED shipping and receive in 2-5 business days within the United States. See our member profile for customer support contact info. We have an easy return policy. Seller Inventory # 52040593

Contact seller

Buy Used

US$ 43.75
Convert currency
Shipping: US$ 3.99
Within U.S.A.
Destination, rates & speeds

Quantity: 1 available

Add to basket

Stock Image

Walters, AAron
Published by Wiley, 2014
ISBN 10: 1118825098 ISBN 13: 9781118825099
Used Paperback

Seller: WorldofBooks, Goring-By-Sea, WS, United Kingdom

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Paperback. Condition: Very Good. The book has been read, but is in excellent condition. Pages are intact and not marred by notes or highlighting. The spine remains undamaged. Seller Inventory # GOR010698227

Contact seller

Buy Used

US$ 46.64
Convert currency
Shipping: US$ 7.52
From United Kingdom to U.S.A.
Destination, rates & speeds

Quantity: 2 available

Add to basket

Seller Image

Ligh, Michael Hale; Case, Andrew; Levy, Jamie; Walters, Aaron
Published by Wiley, 2014
ISBN 10: 1118825098 ISBN 13: 9781118825099
Used Softcover

Seller: GreatBookPrices, Columbia, MD, U.S.A.

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Condition: As New. Unread book in perfect condition. Seller Inventory # 20527499

Contact seller

Buy Used

US$ 60.34
Convert currency
Shipping: US$ 2.64
Within U.S.A.
Destination, rates & speeds

Quantity: Over 20 available

Add to basket

Seller Image

Ligh, Michael Hale; Case, Andrew; Levy, Jamie; Walters, Aaron
Published by Wiley, 2014
ISBN 10: 1118825098 ISBN 13: 9781118825099
Used Softcover

Seller: GreatBookPrices, Columbia, MD, U.S.A.

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Condition: good. May show signs of wear, highlighting, writing, and previous use. This item may be a former library book with typical markings. No guarantee on products that contain supplements Your satisfaction is 100% guaranteed. Twenty-five year bookseller with shipments to over fifty million happy customers. Seller Inventory # 20527499-5

Contact seller

Buy Used

US$ 65.95
Convert currency
Shipping: US$ 2.64
Within U.S.A.
Destination, rates & speeds

Quantity: 2 available

Add to basket

Stock Image

Hale Ligh, Michael; Case, Andrew; Levy, Jamie; Walters, AAron
Published by Wiley, 2014
ISBN 10: 1118825098 ISBN 13: 9781118825099
Used Paperback

Seller: SGS Trading Inc, Franklin Lakes, NJ, U.S.A.

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Paperback. Condition: Good. Textbook, May Have Highlights, Notes and/or Underlining, BOOK ONLYNO ACCESS CODE, NO CD, Ships with Emailed Tracking. Seller Inventory # SKU0487876

Contact seller

Buy Used

US$ 64.71
Convert currency
Shipping: US$ 3.89
Within U.S.A.
Destination, rates & speeds

Quantity: 2 available

Add to basket

Seller Image

Ligh, Michael Hale; Case, Andrew; Levy, Jamie; Walters, Aaron
Published by Wiley, 2014
ISBN 10: 1118825098 ISBN 13: 9781118825099
New Softcover

Seller: GreatBookPrices, Columbia, MD, U.S.A.

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Condition: New. Seller Inventory # 20527499-n

Contact seller

Buy New

US$ 68.87
Convert currency
Shipping: US$ 2.64
Within U.S.A.
Destination, rates & speeds

Quantity: Over 20 available

Add to basket

There are 22 more copies of this book

View all search results for this book