Index
As this ebook edition doesn't have fixed pagination, the page numbers below are hyperlinked for reference only, based on the printed edition of this book.
A
AccessData Forensic Toolkit 249
acquisition, host-based evidence
live acquisition 119
local 119
offline acquisition 120
remote 119
Address Resolution Protocol (ARP) 55
AD Forest Recovery
reference link 358
administrative shares, problems
reference link 356
Advanced Forensics File Format (AFF4) 164
Advanced Persistent Threat (APT) 76, 431, 465
characteristics 431, 432
Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK) 21, 82, 438
adversaries 195
AFF4 Imager 166
After-Action Review (AAR) 44
AlienVault Open Threat Exchange (OTX) 447
Amazon Web Services (AWS) 88, 141
Anonymous 431
Antimalware Scan Interface (AMSI) 356
antivirus scanning 406
App.any 419
application servers 99
APT28 440-442
Arkime 208, 388...