Illustrate how common file systems and operating system artifacts are relevant to digital forensics investigations and discuss the various steps involved in these investigations including, preservation, collection, acquisition, analysis, and reporting.
Learning Objectives
Examine common file systems and operating systems and artifacts created by these operating systems.
Framework Connections
Competency Areas
Feedback
If you would like to provide feedback for this course, please e-mail the NICCS SO at NICCS@hq.dhs.gov.