Forensics Course

From Simson Garfinkel
Revision as of 23:11, 2 May 2009 by Simson (talk | contribs) (1 revision)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigationJump to search

This page has information for the course that I teach on computer forensics.

We will be using software that runs under Linux, MacOS and Windows.

Software for Windows Users

Windows users may wish to install:

  • VMWare Player for Windows. (I will bring to class a VMWare Appliance with Ubuntu 8.08 and the forensic tools pre-installed.)
  • FTK1.80 from Access Data.

You may also find that some of the tools mentioned below are available for Windows.

Software for Mac Users

  • VMWare Fusion 2.0 for MacOS. I will bring to class a VMWare Appliance with Windows XP and the forensic tools pre-installed.
  • libewf
  • afflib
  • SleuthKit 3.0
  • Scalpel 1.60 or PhotoRec

Software for Linux Users

  • VMWare Player for Linux (I will bring to class a VMWare Appliance with Windows XP and the forensic tools pre-installed.)
  • libewf
  • afflib
  • SleuthKit 3.0
  • Scalpel 1.60 or PhotoRec