Description:
This course provides an in-depth introduction to computer forensics, covering methods and tools for collecting, analyzing, and preserving digital evidence. Topics include forensic investigation processes, evidence acquisition, data recovery, file systems, and forensic analysis of Windows, Linux, and mobile devices. The course combines theory with hands-on labs, preparing participants to conduct forensic investigations and support legal cases involving digital evidence.
Duration: 5 Days
Course Code: BDT383
Learning Objectives:
After completing this course, participants will be able to:
Course Outline:
Module 1: Introduction to Computer Forensics
Module 2: Evidence Acquisition and Preservation
Module 3: File Systems and Data Recovery
Module 4: Windows Forensics
Module 5: Linux and MacOS Forensics
Module 6: Network Forensics
Module 7: Mobile Device Forensics
Module 8: Forensic Reporting and Documentation
Structured Labs and Case Studies
Training material provided: Yes (Digital format)