|
|||||||||||||||||||||||||||||||||||
|
8 Reviews
|
Average Customer Review
Share your thoughts with other customers
Create your own review
|
|
Most Helpful First | Newest First
|
|
20 of 20 people found the following review helpful:
4.0 out of 5 stars
Computer Crime Investigation...Cookbook!,
By
Amazon Verified Purchase(What's this?)
This review is from: Handbook of Computer Crime Investigation: Forensic Tools and Technology (Paperback)
What is your real interest?If you have a strong background on computer networks, and want to know about 'true' computers forensic, then you should consider books like 'Know your Enemy' or 'Intrusion Signatures and Analysis'. Else, if you are not a computer networks expert or not even a computer professional, and want to have some knowledge about computers forensic, then this can be your book: very comprehensive, not too depth, rich of examples, and, as a bonus, covering several emerging security issues like Wireless Network Analysis and Embedded Systems Analysis. Note, however that: - It is not a traditional book, but rather a set of 'essays'. - The contained material is quite biased, since several explanations seem to be more oriented toward promoting tools than to discuss the areas they are intended for.
15 of 17 people found the following review helpful:
4.0 out of 5 stars
You'll find something to like in this collection of essays,
By
This review is from: Handbook of Computer Crime Investigation: Forensic Tools and Technology (Paperback)
I am a senior engineer for network security operations. I bought "Handbook of Computer Crime Investigation" (HoCCI) to expand my knowledge of incident response and digital forensics. While "Incident Response" by Mandia, Prosise, and Pepe remains my top pick, HoCCI contains enough original material to qualify as recommended reading.HoCCI is a collection of 14 distinct chapters written by 17 authors. The book's main audience appears to be law enforcement personnel, and Academic Press markets the book as a title in its "Forensic Science" catalog. The introduction states the book is written for "forensic examiners" who testify in court, although anyone performing digital forensics will find useful sections. Some of HoCCI's strengths include numerous case studies. Ch. 2 offers examples of "ineffective" and "effective" disclosure and production of digital records in legal proceedings. Chs. 12, 13, and 14 are dedicated to factual legal and incident response scenarios. Reading these anecdotes, I perceived most of the 17 authors to be extremely familiar with their field. Beyond helpful case studies, HoCCI provides several strong technical chapters. Bob Sheldon's Windows section (ch. 7) is excellent, and Ronald van der Knijff's embedded systems essay (ch. 11) explains the cutting edge of digital forensics. His discussions of directly reading FLASH and EEPROM memory, and using power analysis to break passwords, are impressive. I enjoyed Steve Romig's explanation of using Cisco NetFlow logs in ch. 4, and found the descriptions of wireless systems in ch. 10 to be useful. HoCCI is not without faults. Several chapters seem like product advertisements; EnCase is the focus of ch. 3, while NFR's IDS appears in ch. 5. The network analysis section (ch. 9) repeats the much-quoted myth that TCP sequence numbers count packets; they actually count bytes of application data. Overall, HoCCI is a useful supplement to Foundstone's "Incident Response." HoCCI may spend too many pages describing how to search hard drives for remnants of illicit images, illegal software, or harassing emails. Fortunately, its technical content distinguishes it from "Computer Forensics" by Kruse and Heiser and "Incident Response: A Strategic Guide" by Schultz and Shumway.
8 of 8 people found the following review helpful:
5.0 out of 5 stars
Essays by a variety of learned and experienced authors,
By Midwest Book Review (Oregon, WI USA) - See all my reviews
This review is from: Handbook of Computer Crime Investigation: Forensic Tools and Technology (Paperback)
Capably edited by Eoghan Casey (System Security Administrator, Yale University), Handbook Of Computer Crime Investigation: Forensic Tools And Technology is a fascinating guide to the software and hardware tools necessary for collecting digital evidence of cyber crimes ranging from cyberstalking and child pornography to financial fraud, espionage, or terrorism. Essays by a variety of learned and experienced authors present the latest means of forensic analysis for Windows, Unix, and more systems. Sample code, charts, and appropriate case examples pepper this amazing, cutting-edge criminology reference. Handbook Of Computer Crime Investigation is an invaluable and "user friendly" contribution to the field of computer and Internet security.
7 of 7 people found the following review helpful:
5.0 out of 5 stars
A step on..,
By
This review is from: Handbook of Computer Crime Investigation: Forensic Tools and Technology (Paperback)
The 'Handbook of Computer Crime Investigation' follows on well from Eoghan Casey's previous title, 'Digital Evidence and Computer Crime' which I found to be a sound introduction to the subject. This latest book is targeted at those already proficient in Computer Forensics and provides in depth detail of techniques essential to any computer related investigation. Also included are sections specific to examining various operating systems. As someone who both works in information security and has a particular interest in computer forensics I can thoroughly recommend this book!
2 of 2 people found the following review helpful:
5.0 out of 5 stars
Hands-on, immediately applicable to our real-world cases,
By
This review is from: Handbook of Computer Crime Investigation: Forensic Tools and Technology (Paperback)
Eoghan Casey's text is immediately useful. It's not theory, it's practical. It's not biased to one operating system, but covers several technologies. Finally, Eoghan and the book's contributors do not gloss over today's most offensive topics, they address them with vigor and solutions.
I would share one concern: the chapter-long product/vendor discussion. Some reviewers label it marketing; other reviewers don't mention it at all. I'll just forewarn you that you will learn much more about EnCase or NFR than about their competitors. As a security consultant for Hewlett-Packard, it seems my bookshelf fills up entirely too easily, especially as of the last few years. Therefore, I've gotten fairly selective with new book purchases (until I can get a new bookshelf). However, Casey's text is DEFINITELY worth getting - worth knocking another book off to make room. :) I hope you enjoy this comprehensive text at least half as much as I do.
9 of 13 people found the following review helpful:
5.0 out of 5 stars
One of the best computer forensics books,
This review is from: Handbook of Computer Crime Investigation: Forensic Tools and Technology (Paperback)
The television show Quincy was a double-edged sword for the forensic community. It elevated the status and importance of the coroner. However, the speed at which Quincy was able to find answers was utterly unrealistic. By and large, within forensics -- be it computer or human forensics -- answers are found with slow, deliberate, and methodical steps, not in the undisciplined manner that is often portrayed in the media. In light of the growing number of computer crime incidents, computer forensics is taking on a critical role within information systems. The focus of computer forensics is twofold. First is the attempt to determine whether a breach has occurred and, if so, to determine the offender. Second is prosecution of the offender, if the breach was a criminal activity. With current information technology, the first part is easier, while prosecuting a computer criminal remains extremely difficult. The criticality of a specific topic is often portrayed in the number of titles that are available on that topic. Late 2001 and early 2002 have produced nearly a dozen books on computer forensics and cyber crime. Although computer forensics is becoming a mainstream topic, the fact that more books are being published on the subject does not mean in any way that the problem will go away quickly. With this in mind, the Handbook of Computer Crime Investigation provides information on dealing with cyber crime. Each book approaches the subject from a different angle. Eoghan Casey's Handbook of Computer Crime Investigation: Forensic Tools & Technology is an excellent work. The book has articles written by 17 authors with expertise in different areas of computer crime and forensics. The authors are from the fields of law enforcement and professional services, as well as computer forensic software firms. The editor, Eoghan Casey, does a good job of keeping a coherent and logical sequence throughout the book, which is often difficult in books with multiple authors. The variety of authors is what makes this book shine. Each author addresses a specific subject matter, and the chapters are written in a clear and concise fashion. The chapters on wireless networks and embedded systems -- critical topics in a forensic investigation -- are excellent. The Handbook of Computer Crime Investigation is one of the first books to include basic forensic information on these topics. The Handbook of Computer Crime Investigation was written to complement Casey's preceding book Digital Evidence and Computer Crime (Academic Press 2000; ISBN: 012162885X). The Handbook of Computer Crime Investigation provides different looks on the proper course of digital forensic collection. The "Case Examples" sections are extremely valuable because they provide readers with examples of the technical and legal issues that arise in real-world computer investigations. The book includes sections written by forensic tool vendors. The vendors do a good job of writing in a technical nature rather than marketing hype. The general consensus between the three books is that the EnCase software tool from Guidance Software (www.guidancesoftware.com) has become the tool for use in computer forensic investigations.
2 of 3 people found the following review helpful:
5.0 out of 5 stars
Excellent for making your own Methodology,
By "ljperez" (Mexico) - See all my reviews
This review is from: Handbook of Computer Crime Investigation: Forensic Tools and Technology (Paperback)
The book reviews different tools and techniques for a forensic investigation by experts in the field. Very good reference manual for new and experienced investigators.
4 of 10 people found the following review helpful:
5.0 out of 5 stars
This is an excellent book from a real expert.,
By Eric Kent (USA) - See all my reviews
This review is from: Handbook of Computer Crime Investigation: Forensic Tools and Technology (Paperback)
This is an excellent book from a real expert.Everyone and their brother are writing books about computer security and digital forensics. The difference here is that Eoghan Casey knows what he is talking about. Excellent book! |
|
Most Helpful First | Newest First
|
|
Handbook of Computer Crime Investigation: Forensic Tools and Technology by Eoghan Casey (Paperback - November 12, 2001)
$71.95 $55.49
In Stock | ||