This unit examines file structure systems, cache files, logs, operating system artefacts, temporal data, technical search strategies and gives an introduction to forensic software tools and their use in data preservation and recovery.<br/><br/>The unit will cover the mainstream operating systems (Windows, Linux and UNIXen) and their commonly associated file systems; it will also cover major 'backroom' operating systems (IBM z/OS, IBM i5/OS and HP OpenVMS) with their file systems. The latter operating systems and file systems are unknown on the desktop, but are critical components of almost every major financial organisation, utility and the US Department of Defense, and are part of the... -- Course Website
Instructor: PICT staff
Prerequisites: Admission to MCompForens or PGDipCompForens or PGCertCompForens