Chapter 1: An Overview of Digital Forensics
Introduction
Digital Forensics and Its Historical Background
Crimes and Digital Forensics
Overview of Digital Forensics Process
Challenges in Digital Forensics and Future Trend
Chapter 2: Fundamentals of Digital Data
Introduction
What Is Digital Data
Digital Forensics and Hexadecimal Number System
Conclusion
Chapter 3: Processing of Digital Evidence
Introduction
The Process of Digital Forensics Investigation
Evidence Collection
Evidence Preservation
Data Acquisition
Data Validation
Data Analysis
Report Writing
Digital Evidence Processing with Linux
Conclusion
Chapter 4: Hardware Fundamentals
Introduction
BIOS: Basic Input Output System
Unified Extensible Firmware Interface
Importance of BIOS/UEFI in Digital Forensics
Conclusion
Chapter 5: Traditional Hard Drive Geometry
Introduction
Traditional Hard Disk Components
CHS Addressing Scheme
Logical Block Addressing
Conclusion
Chapter 6: Solid-State Drive Geometry
Introduction
SSD Architecture
Flash Translation Layer
Digital Forensic Investigation Challenges
Conclusion
Chapter 7: Partitions, Boot Process, MBR, and GPT
Introduction
A Brief Overview of the Boot Process
The Master Boot Record and Partition Table
GUID Partition Table
Forensic Analysis of MBR and GPT
Conclusion
Chapter 8: FAT File Systems
Introduction
Basic Framework of a File System
FAT File System
Conclusion
Chapter 9: New Technology File Systems
Introduction
NTFS Layout
NTFS Metadata and Contents
Other Data Hiding Techniques in NTFS
Conclusion
Chapter 10: Data Recovery from Secondary Storage Media
Introduction
File Signature Analysis
Steganography
Recovery of Internet and Browser Artifacts
Recovery of Data Stored in Cloud
Tools
Conclusion
Chapter 11: Digital Forensics Report Writing
Introduction
Key Principles of Digital Forensics Report Writing
Guidelines for Writing a Digital Forensics Report
Conclusion
Additional Resource