|
by: Brian Carrier
List Price: $59.99Amazon.com's Price: $37.79 You Save: $22.20 (37%)Prices subject to change.
Availability: Usually ships in 24 hours
Binding: Paperback
Dewey Decimal Number: 005.8
EAN: 9780321268174
ISBN: 0321268172
Label: Addison-Wesley Professional
Manufacturer: Addison-Wesley Professional
Number Of Items: 1
Number Of Pages: 600
Publication Date: March 27, 2005
Publisher: Addison-Wesley Professional
Sales Rank: 29912
Studio: Addison-Wesley Professional
Related Items:
Editorial Review:
Product Description: This is an advanced cookbook and reference guide for digital forensic practitioners. File System Forensic Analysis focuses on the file system and disk. The file system of a computer is where most files are stored and where most evidence is found; it also the most technically challenging part of forensic analysis. This book offers an overview and detailed knowledge of the file system and disc layout. The overview will allow an investigator to more easily find evidence, recover deleted data, and validate his tools. The cookbook section will show how to use the many open source tools for analysis, many of which Brian Carrier has developed himself.
Customer Reviews
Average Rating: 
Rating: - Fantastic
I've been in IT for over 25 years, and in that time I've read a lot of technical books. "File System Forensic Analysis" is not only the best book I have read on computer forensics, it's probably the best technical work in ANY field I've ever read. It's thoroughly researched, clearly written, and contains virtually no fluff. The numerous rave reviews it has received are well-deserved.
My only quibble is the short, but seemingly gratuitous section on hexadecimal and decimal arithmetic. ... Read More
Rating: - Superb!!
I can't say enough good things about this book and author. The material is beautifully laid out and the writing style is fluid and effortless. The author has a real talent for using metaphors and figures to illustrate elusive concepts.
All but the very rarest file systems are covered, and numerous 'screenshots' show how to use the Linux command prompt and get your hands dirty exploring disks on your own.
While this book is a gold standard for digital forensic examiners, it would ... Read More
Rating: - Great resource
Great resource on file systems and file system data structures, although I wish it covered Apple's HFS+.
Rating: - The bible for File System Forensics
Great Book. Great job Brian. A must have in your bookshelf if you are serious about computer forensics.
It only lacks two things to be perfect: a reiserfs and a HFS+ sections.
Only an error. GPT partition schema isn't used only in big servers. New Intel Macintoshes use it by default for their boot drive.
Rating: - super
Thanks a lot, we are very happy to have this book in our library!
|