Digital Forensics Professional
- Study at Your Own Pace
DFP offers lifetime access to course materials and convenient access to the world’s best Digital Forensics virtual labs: Hera Lab.
Highly Practical
Digital Forensics is an interactive course combining core materials and concepts with supplementary video demonstrations, and it gives you the opportunity to apply and test your knowledge through our Hera Lab environment.
The Course at a Glance
- Learn how to acquire volatile and non-volatile data using a range of techniques
- Get to grips with file structure, then analyse file headers, malicious documents and file metadata
- Learn to navigate partitions, recover corrupted disks and locate hidden data
- Learn how to analyse both FAT and NTFS file systems
- Get to know file carving and build your own custom carving signatures
- Learn how to analyse the Windows registry, LNK files, prefetch files and previously connected USB devices
- Learn to conduct thorough investigations against Skype, Explorer shellbags and the Windows recycle bin
- Become competent at forensically investigating network attacks
Course Material
- High-quality video training materials
- Interactive slides
- Hands-on tasks in our industry-leading virtual labs
Course Delivery
- Self-paced / HTML5, PDF, MP4
- Offline access available
- Access from PC, tablet and smartphone
Curriculum
- Module 1: Introduction to Digital Forensics
- Module 2: Data Acquisition
- Module 3: Data Representation and File Examination
- Module 4: Disks
- Module 5: File Systems
- Module 6: Windows Forensics
- Module 7: Network Forensics
- Module 8: Log Analysis
- Module 9: Timeline Analysis
- Module 10: Reporting
Prerequisites
- A solid understanding of the fundamentals of modern operating systems
- Basic knowledge of networks and network protocols, and of programming languages
Who Can Attend
- Security professionals, forensic investigators and forensic specialists
- Incident responders and threat hunters
- Digital forensics instructors and students
- Red team members looking to refresh their techniques, tactics and procedures
Laboratuvarlar
Integrated with Hera Lab, the most advanced virtual lab in IT security, this product offers an unmatched practical learning experience. Hera is the only virtual lab that provides each student with fully isolated access to every one of the real-world network scenarios available on the platform.
Students can access Hera Lab from anywhere over VPN.
| Lab ID | Description | Category |
|---|---|---|
| Lab 1 | How to Acquire Data | Instructional |
| Lab 2 | Acquiring Data Using Linux | Instructional |
| Lab 3 | Basic File Header Analysis | Instructional |
| Lab 4 | Extracting Metadata from Documents | Instructional |
| Lab 5 | Basic PDF and Word Document Analysis | Instructional |
| Lab 6 | Analysing Microsoft Office Documents | Instructional |
| Lab 7 | Recovering a Corrupted Disk – MBR Case | Instructional |
| Lab 8 | Recovering a Corrupted Disk – GPT Case | Instructional |
| Lab 9 | Finding Hidden Partitions and Partition Gaps | Instructional |
| Lab 10 | Analysing the FAT File System | Instructional |
| Lab 11 | Examining Deleted Files, Formatted Disks and Slack Space | Instructional |
| Lab 12 | Navigating NTFS File System Features | Instructional |
| Lab 13 | File Carving and Building Custom Signatures | Instructional |
| Lab 14 | Windows Registry Analysis | Instructional |
| Lab 15 | Analysing Different Windows Artefacts | Instructional |
| Lab 16 | USB Forensic Analysis | Instructional |
| Lab 17 | Analysing the Windows Recycle Bin | Instructional |
| Lab 18 | Traffic Analysis Using Wireshark – Part 1 | Instructional |
| Lab 19 | Traffic Analysis Using Wireshark – Part 2 | Instructional |
| Lab 20 | Network File Carving | Instructional |
| Lab 21 | Examining Network Scans | Instructional |
| Lab 22 | Investigating Network Attacks | Instructional |
| Lab 23 | Using the Snort IDS | Instructional |
| Lab 24 | Analysing SSL/TLS Certificates and Traffic | Instructional |
| Lab 25 | Log Analysis Using Linux | Instructional |