Practical Binary Analysis: Build Your Own Linux Tools for Binary Instrumentation

Practical Binary Analysis: Build Your Own Linux Tools for Binary Instrumentation

Authored by Dennis Andriesse
Malware Analysis 3 views 0 downloads 2019
Published 2019
Language English
Publisher No Starch Press
'Practical Binary Analysis. Build Your Own Linux Tools for Binary Instrumentation, Analysis, and Disassembly' delivers an authoritative, methodical framework for digital evidence acquisition, forensic examination, and cybercrime investigation. Emphasizing legal admissibility, forensic soundess, and rigorous chain of custody, this volume covers the full lifecycle of a digital investigation.

Key topics include physical disk imaging, file system analysis (NTFS, EXT4), Windows artifact examination (Registry, Prefetch, Event Logs), volatile RAM memory capture and analysis, network packet dissection, browser history extraction, and forensic report writing. Workflows utilizing Autopsy, FTK Imager, and EnCase are detailed.

An indispensable handbook for digital forensic examiners, incident response specialists, corporate investigators, and law enforcement analysts.
Contents at a Glance
Chapter 1: Linux Architecture, Kernel, and Filesystem Hierarchy
Chapter 2: Essential Command Line Utilities and Navigation
Chapter 3: Managing Users, Groups, and Permissions (chmod, chown)
Chapter 4: Process Management, Daemons, and System Monitoring
Chapter 5: Package Management (apt, yum, dnf) and Repositories
Chapter 6: Networking in Linux: Interfaces, Routing, and Firewalls (iptables/ufw)
Chapter 7: Bash Shell Scripting: Variables, Loops, and Automation
Chapter 8: Linux Hardening, SSH Security, and Audit Logs
Index & Further Reading