Holiday book sale: Save up to 30% on print and eBooks. No promo code needed.
Save up to 30% on print and eBooks.
Integrating Python with Leading Computer Forensics Platforms
1st Edition - September 21, 2016
Author: Chet Hosmer
9 7 8 - 0 - 1 2 - 8 0 9 9 4 9 - 0
9 7 8 - 0 - 1 2 - 8 0 9 9 5 0 - 6
Integrating Python with Leading Computer Forensic Platforms takes a definitive look at how and why the integration of Python advances the field of digital forensics. In addition,… Read more
Save 50% on book bundles
Immediately download your ebook while waiting for your print delivery. No promo code is needed.
Integrating Python with Leading Computer Forensic Platforms takes a definitive look at how and why the integration of Python advances the field of digital forensics. In addition, the book includes practical, never seen Python examples that can be immediately put to use. Noted author Chet Hosmer demonstrates how to extend four key Forensic Platforms using Python, including EnCase by Guidance Software, MPE+ by AccessData, The Open Source Autopsy/SleuthKit by Brian Carrier and WetStone Technologies, and Live Acquisition and Triage Tool US-LATT. This book is for practitioners, forensic investigators, educators, students, private investigators, or anyone advancing digital forensics for investigating cybercrime.
Additionally, the open source availability of the examples allows for sharing and growth within the industry. This book is the first to provide details on how to directly integrate Python into key forensic platforms.
Provides hands-on tools, code samples, detailed instruction, and documentation that can be immediately put to use
Shows how to integrate Python with popular digital forensic platforms, including EnCase, MPE+, The Open Source Autopsy/SleuthKit, and US-LATT
Presents complete coverage of how to use Open Source Python scripts to extend and modify popular digital forensic Platforms
Digital forensic professionals and analysts, information security professionals, researchers, and practitioners, legal professionals, law enforcement officers, as well as students in digital forensics criminal justice programs at university
Chapter 1: Integrating Python With Forensics Platforms
What Is the Python Value Proposition for Forensics?
What Are the Possible Integration Points and Methods?
Why Open Source?
What Forensic Platforms Are Covered?
Keys to Success
Chapter 2: Key Python Language Elements for Forensics
Quick Overview of the Python Environment
Python Forensics Source Code Template SRC-2-1.py
Basic Forensic Script SRC-2-2.py
Chapter 3: Integrating Python With MPE+
Building and MPE+ Python Template
Creating a HashSearch MPE+ Python Script
Chapter 4: Integrating Python With EnCase/EnScripts
EnCase Integration Points
Chapter 5: Integrating Python With Leading Forensic Platforms
Postprocessing of US-LATT Acquisition
Chapter 6: Integrating Python With Leading Forensic Platforms
Integrating Python With Autopsy
Chapter 7: Future Look and an Integration Challenge Problem
No. of pages: 216
Published: September 21, 2016
Paperback ISBN: 9780128099490
eBook ISBN: 9780128099506
Chet Hosmer serves as an Assistant Professor of Practice at the University of Arizona in the Cyber Operations program, where he is teaching and researching the application of Python and Machine Learning to advanced cybersecurity challenges. Chet is also the founder of Python Forensics, Inc. a non-profit organization focused on the collaborative development of open-source investigative technologies using Python and other popular scripting languages. Chet has made numerous appearances to discuss emerging cyber threats including NPR, ABC News, Forbes, IEEE, The New York Times, The Washington Post, Government Computer News, Salon.com, and Wired Magazine. He has 7 published books with Elsevier and Apress that focus on data hiding, passive network defense strategies, Python Forensics, PowerShell, and IoT.
Affiliations and expertise
President, Python Forensics, Inc.
Assistant Professor, University of Arizona, Arizona, USA