This course is designed specifically for experienced technological crime investigators who possess a basic knowledge of the Linux operating system and who may be required to seize and / or analyse computer hardware running Linux. This course will take an in-depth look at some aspects of the Linux operating system and the Second Extended File System. The course will address the forensic analysis of a Linux based system as well using a Linux based system as an investigative / analysis tool.
The focus of this course is to give the investigator confidence in seizing stand-alone computer systems in a Linux environment and performing a forensic analysis of a Linux based personal computer.
To be eligible to take this course, students must meet the following criteria:
Duration: Ten working days. Centralized.
Number of Students: Twenty
Language of Instruction: English and French