Free

DFIR Operator Series: MacOS Forensics

It seemed that MacOS was unhackable for a time… Until it wasn’t. Be sure you have the skills to acquire and analyze forensic data from these systems. This course will give you a fundamental understanding of MacOS-based systems to effectively acquire and analyze data, interpret results, and present them as evidence in a legal setting.
2
44
M
Time
intermediate
difficulty
3
ceu/cpe

Course Content

Overview of MacOS Artifacts

31m

Overview of MacOS Artifacts
FileSystem Overview

32m

FileSystem Overview
The World of MacOS

34m

The World of MacOS
Data Acquisition on a MacOS

29m

Data Acquisition on a MacOS
Analyzing Compromised Images

36m

Analyzing Compromised Images
Course Description

This course is an introduction to the forensic analysis of Mac OS systems. You will learn the basics of digital forensics, including acquiring and analyzing data from Mac systems. Topics covered include:

  • Understanding the Mac file system and file system artifacts
  • Identifying and analyzing system and user activity with built-in Mac tools
  • Utilizing third-party forensic tools for data acquisition and analysis
  • Examining and interpreting system and application log files
  • Investigating and analyzing user activity such as browser history and chat logs
  • Techniques for preserving and presenting forensic evidence in a legal setting
  • The course will be primarily hands-on and includes practical exercises and case studies to give you experience with the forensic analysis of Mac systems.

    This course is part of a Career Path:
    No items found.

    Instructed by

    No items found.
    Provider
    Cybrary Logo
    Certification Body
    Certificate of Completion

    Complete this entire course to earn a DFIR Operator Series: MacOS Forensics Certificate of Completion