Introduction to Forensics

Kyle Rankin

Sr. Systems Administrator

Cyan Optics Inc.

Author of The Official Ubuntu Server Book, Ubuntu Hacks, and Knoppix Hacks


What is Forensics

MAC Times

Order of Volatility

Before You Do Anything

Sleuthkit and Autopsy

Our Sample Image

A Forensics Walk-through

Demos are always dangerous...


Additional Resources