更新时间:2021-12-08 12:31:32
封面
版权页
Credits
About the Authors
About the Reviewers
www.PacktPub.com
Support files eBooks discount offers and more
Preface
What this book covers
What you need for this book
Who this book is for
Conventions
Reader feedback
Customer support
Chapter 1. Introduction to Mobile Forensics
Mobile forensics
Mobile phone evidence extraction process
Practical mobile forensic approaches
Potential evidence stored on mobile phones
Rules of evidence
Good forensic practices
Summary
Chapter 2. Understanding the Internals of iOS Devices
iPhone models
iPhone hardware
iPad models
iPad hardware
File system
The HFS Plus file system
Disk layout
iPhone operating system
Chapter 3. Data Acquisition from iOS Devices
Operating modes of iOS devices
Physical acquisition
Acquisition via a custom ramdisk
Acquisition via jailbreaking
Chapter 4. Data Acquisition from iOS Backups
iTunes backup
iCloud backup
Chapter 5. iOS Data Analysis and Recovery
Timestamps
SQLite databases
Property lists
Other important files
Recovering deleted SQLite records
Chapter 6. iOS Forensic Tools
Elcomsoft iOS Forensic Toolkit
Oxygen Forensic Suite 2014
Cellebrite UFED Physical Analyzer
Paraben iRecovery Stick
Open source or free methods
Chapter 7. Understanding Android
The Android model
Android security
Android file hierarchy
Android file system
Chapter 8. Android Forensic Setup and Pre Data Extraction Techniques
A forensic environment setup
Screen lock bypassing techniques
Gaining root access
Chapter 9. Android Data Extraction Techniques
Imaging an Android Phone
Data extraction techniques
Chapter 10. Android Data Recovery Techniques
Data recovery
Chapter 11. Android App Analysis and Overview of Forensic Tools
Android app analysis
Reverse engineering Android apps
Forensic tools overview
Cellebrite – UFED
MOBILedit
Autopsy
Chapter 12. Windows Phone Forensics
Windows Phone OS
Windows Phone file system
Data acquisition
Chapter 13. BlackBerry Forensics
BlackBerry OS
BlackBerry analysis
Index