Learning iOS Forensics - Second Edition

Mattia Epifani, Pasquale Stirparo

  • 出版商: Packt Publishing
  • 出版日期: 2016-09-30
  • 售價: $1,910
  • 貴賓價: 9.5$1,815
  • 語言: 英文
  • 頁數: 323
  • 裝訂: Paperback
  • ISBN: 1785882082
  • ISBN-13: 9781785882081
  • 相關分類: Apple Developer
  • 下單後立即進貨 (約3~4週)

商品描述

A practical guide to analyzing iOS devices with the latest forensics tools and techniques

About This Book

  • This book is a comprehensive update to Learning iOS Forensics
  • This practical book will not only cover the critical aspects of digital forensics, but also mobile forensics
  • Whether you’re a forensic analyst or an iOS developer, there’s something in this book for you
  • The authors, Mattia Epifani and Pasquale Stirparo, are respected members of the community, they go into extensive detail to cover critical topics

Who This Book Is For

The book is for digital forensics analysts, incident response analysts, IT security experts, and malware analysts. It would be beneficial if you have basic knowledge of forensics

What You Will Learn

  • Identify an iOS device between various models (iPhone, iPad, iPod Touch) and verify the iOS version installed
  • Crack or bypass the protection passcode chosen by the user
  • Acquire, at the most detailed level, the content of an iOS Device (physical, advanced logical, or logical)
  • Recover information from a local backup and eventually crack the backup password
  • Download back-up information stored on iCloud
  • Analyze system, user, and third-party information from a device, a backup, or iCloud
  • Examine malicious apps to identify data and credential thefts

In Detail

Mobile forensics is used within many different domains, but is chiefly employed in the field of information security. By understanding common attack vectors and vulnerability points, security professionals can develop measures and examine system architectures to harden security on iOS devices. This book is a complete manual on the identification, acquisition, and analysis of iOS devices, updated to iOS 8 and 9.

You will learn by doing, with various case studies. The book covers different devices, operating system, and apps. There is a completely renewed section on third-party apps with a detailed analysis of the most interesting artifacts. By investigating compromised devices, you can work out the identity of the attacker, as well as what was taken, when, why, where, and how the attack was conducted. Also you will learn in detail about data security and application security that can assist forensics investigators and application developers. It will take hands-on approach to solve complex problems of digital forensics as well as mobile forensics.

Style and approach

This book provides a step-by-step approach that will guide you through one topic at a time.

This intuitive guide focuses on one key topic at a time. Building upon the acquired knowledge in each chapter, we will connect the fundamental theory and practical tips by illustrative visualizations and hands-on code examples.

商品描述(中文翻譯)

一本實用指南,介紹最新的鑑識工具和技術,用於分析iOS設備。

關於本書:
- 本書是《學習iOS鑑識》的全面更新。
- 本實用書籍不僅涵蓋了數位鑑識的關鍵方面,還包括了移動鑑識。
- 無論您是鑑識分析師還是iOS開發人員,本書都適合您。
- 作者Mattia Epifani和Pasquale Stirparo是社群中受人尊敬的成員,他們詳細介紹了關鍵主題。

本書適合對象:
- 數位鑑識分析師、事件回應分析師、IT安全專家和惡意軟體分析師。
- 如果您具備基本的鑑識知識,將對您有所幫助。

您將學到的內容:
- 辨識不同型號的iOS設備(iPhone、iPad、iPod Touch)並驗證安裝的iOS版本。
- 破解或繞過使用者選擇的保護密碼。
- 以最詳細的層次獲取iOS設備的內容(物理、進階邏輯或邏輯)。
- 從本地備份中恢復資訊,並可能破解備份密碼。
- 下載存儲在iCloud上的備份資訊。
- 從設備、備份或iCloud中分析系統、使用者和第三方資訊。
- 檢查惡意應用程式以識別資料和憑證竊取。

詳細內容:
- 移動鑑識在許多不同領域中使用,但主要應用於資訊安全領域。
- 通過了解常見的攻擊向量和弱點,安全專業人員可以制定措施並檢查系統架構,以加強iOS設備的安全性。
- 本書是一本完整的手冊,介紹了iOS設備的識別、獲取和分析,並更新至iOS 8和9版本。
- 通過各種案例研究,您將透過實際操作學習。
- 本書涵蓋了不同的設備、作業系統和應用程式。
- 關於第三方應用程式的部分進行了全面更新,並詳細分析了最有趣的證據。
- 通過調查受攻擊的設備,您可以找出攻擊者的身份,以及攻擊時偷取了什麼、何時、為什麼、在哪裡以及如何進行攻擊。
- 您還將詳細了解數據安全和應用程式安全,這將有助於鑑識調查人員和應用程式開發人員。
- 本書將採取實踐方法,解決數位鑑識和移動鑑識的複雜問題。

風格和方法:
- 本書提供了一種逐步指導的方法,每次專注於一個主題。
- 這本直觀的指南一次專注於一個關鍵主題。
- 在每個章節中積累的知識基礎上,我們將通過圖像化示例和實際代碼示例來連接基本理論和實用技巧。