内容简介
This book is aimed at practicing digital forensics analysts and information security professionals familiar with performing basic forensic investigations on mobile device operating systems namely Android, iOS, Windows, and Blackberry. It's also for those who need to broaden their skillset by adding more data extraction and recovery techniques.
AI简介
这是一本全面介绍移动设备取证技术和方法的实用指南。这本书旨在帮助数字取证分析师和信息安全专业人士掌握如何在Android、iOS、Windows和BlackBerry等移动设备操作系统上执行基本的取证调查。同时,对于想要扩展技能集,学习更多数据提取和恢复技术的人来说,这本书也是一个理想的选择。
本书涵盖了移动设备中的个人数据存储,讨论了SIM卡的组成,iTunes的功能,SQLite数据库的重要性,JTAG和Chip-off技术简介,plist文件解析的工具和方法,使用Oxygen Forensics进行Apple设备获取,Android physical dumps and backups parsing with AXIOM,使用Electronic Evidence Examiner提取数据从Facebook账户,使用libmobiledevice进行Apple设备获取,Android device acquisition with MOBILedit Forensic,Android physical dumps and backups parsing with Autops