文档介绍:Special Publication 800-86
(Draft)
Guide puter and
Network Data Analysis:
Applying Forensic Techniques
to Incident Response
mendations of the National Institute
of Standards and Technology
Tim Grance
Suzanne Chevalier
Karen Kent
Hung Dang
NIST Special Publication 800-86 Guide puter work Data
(Draft) Analysis: Applying Forensic Techniques
to Incident Response (Draft)
mendations of the National
Institute of Standards and Technology
Tim Grance, Suzanne Chevalier,
Karen Kent, Hung Dang
C O M P U T E R S E C U R I T Y
Computer Security Division
Information Technology Laboratory
National Institute of Standards and
Technology
Gaithersburg, MD 20899-8930
August 2005
. Department merce
Carlos M. Gutierrez, Secretary
Technology Administration
Michelle O'Neill, Acting Under Secretary
merce for Technology
National Institute of Standards and Technology
William A. Jeffrey, Director
GUIDE PUTER WORK DATA ANALYSIS: APPLYING FORENSIC TECHNIQUES TO INCIDENT RESPONSE (DRAFT)
Reports puter Systems Technology
The Information Technology Laboratory (ITL) at the National Institute of Standards and Technology
(NIST) promotes the . economy and public welfare by providing technical leadership for the nation’s
measurement and standards infrastructure. ITL develops tests, test methods, reference data, proof of
concept implementations, and technical analysis to advance the development and productive use of
information technology. ITL’s responsibilities include the development of technical, physical,
administrative, and management standards and guidelines for the cost-effective security and privacy of
sensitive unclassified information in puter systems. This Special Publication 800-series
reports on ITL’s research, guidance, and outreach efforts puter security and its collaborative
activities with industry, government, and anizations.