From the course: CompTIA Cybersecurity Analyst (CySA+) (CS0-003) Cert Prep

Unlock the full course today

Join today to access over 24,200 courses taught by industry experts.

Digital forensics toolkit

Digital forensics toolkit

- [Instructor] Forensics work is computationally intense and it requires access to a robust digital forensics toolkit. You'll need to begin with a digital forensics workstation. When you're selecting the hardware that you're going to use for forensics, be sure to choose a system that has quite a bit of RAM and a powerful CPU. Both of those will be invaluable when performing the computationally intensive process of processing evidence and calculating hash values. You'll also want a system with plenty of onboard hard disk space for storing intermediate analysis. Your forensics workstation should be loaded with the forensic software of your choice. You'll need a forensic analysis tool such as EnCase, FTK, or Autopsy. These are robust suites of forensic tools that dramatically speed up the analysis process. They can consume images and other forensic artifacts and quickly process them, pulling out relevant information for your analysis. You'll also need a set of cryptographic tools. These…

Contents