X hits on this document

Powerpoint document

Security+ Guide to Network Security Fundamentals, Third Edition - page 58 / 60

165 views

0 shares

0 downloads

0 comments

58 / 60

Security+ Guide to Network Security Fundamentals, Third Edition

Responding to a Computer Forensics Incident (continued)

Examine for evidence (continued)

RAM slack

Can contain any information that has been created, viewed, modified, downloaded, or copied since the computer was last booted

Drive file slack (sometimes called drive slack)

Contains remnants of previously deleted files or data from the format pattern associated with disk storage space that has yet to be used by the computer

An additional source of hidden clues can be gleaned from metadata, or data about data

Document info
Document views165
Page views165
Page last viewedTue Dec 06 22:09:45 UTC 2016
Pages60
Paragraphs499
Words2429

Comments