Getting Started in Forensic Research

From ForensicsWiki
Revision as of 05:25, 26 November 2008 by Simsong (Talk | contribs)

Jump to: navigation, search

Interested in getting involved in computer forensics research? Here's how to start.

Recommended Reading

  1. Read the proceedings for each of the past Digital Forensic Research Workshops sessions. If a specific article looks interesting, download it and read it!
  2. Review the IFIP Working Group 11.9 on Digital Forensics website and look at the proceedings from the past conferences (unfortunately, you can't download the papers and the book costs more than $100, but if you see something interesting it can usually be requested via interlibrary loan) (Some higher education libraries subscribe to SpringerLink which makes full text of these proceedings available to students and faculty as part of the school subscription)
  3. Search for interesting forensic terms at the ACM Digital Library and CiteSeer
  4. Review the Sleuth Kit Website. In particular, review the issues of The Sleuth Kit Informer and download a copy of Sleuth Kit for your computer.

Exercises for the Reader

  1. Download a few of the public corpora from the Digital Corpora website and give them a try.
  2. Try your hand at the HoneyNet Project Challenges. They are a little older, but are still valid. Plus there are solutions from previous attempts online!