Syllabuses - UG

CS459 - Digital Forensics

TIMETABLETEACHING MATERIAL
Credits20
Level4
SemesterTerm 2
Availability

Available as an optional class to participants taking UG Graduate and Degree Apprenticeship programmes, e.g. BSc Hons IT: Software Development, and BSc Hons Digital and Technology Solutions.

Prerequisites

CS354 Computer Networks or CS323 Computer Networks.

Learning Activities Breakdown

12 tutorials, online study and preparation for the coursework assignment and class test.

Items of Assessment2
Assessment

100% by coursework. An individual assignment 60% and 40% practical exercises.

ILO Assessment Mapping
Pedagogical Methods Used to Support Competency Development
Resit

100% by coursework.

LecturerSotirios Terzis

Aims and Objectives

The aim of the class is to enable participants to understand issues associated with the nature of cybercrime, digital evidence, detection methods and proof, in a variety of digital forensic contexts, including computers, networks and portable digital devices.

Learning Outcomes

After completing this class participants will be able to: 

  1. Understand the varieties and impact of cybercrime. 
  2. Understand how to undertake digital forensic examinations, where evidence is collected to support or oppose a hypothesis. 
  3. Understand the role of the file system in detecting and mapping user activity. 
  4. Understand network-based detection techniques. 
  5. Understand the nature of anti-forensics. 

Syllabus

Indicative topics 

  1. Context, Legal and Practical Considerations 
    • Cybercrime; Forensic process; Legal process and law enforcement; ACPO guidelines; Digital evidence; Incident response 
  2. Computer Forensics 
    • File Systems (File system organisation, Memory, Registry, System logs); Disk imaging; Programs and their traces; Searching and analysis; Investigative tools (Open Source and Proprietary) 
  3. Network Forensics 
    • Intrusion detection; Attack trace-back; Packet inspection; Log analysis 
  4. Anti-Forensics and Hostile Code 
  5. Other topics 
    • Mobile devices, Virtual forensics 

Recommended Reading

This list is indicative only – the class lecturer may recommend alternative reading material. Please do not purchase any of the reading material listed below until you have confirmed with the class lecturer that it will be used for this class.

  • Sheward, Mike. Hands-on Incident Response and Digital Forensics. Swindon, UK: BCS Learning & Development, 2018.
  • Johansen, Gerard. Digital Forensics and Incident Response: Incident Response Tools and Techniques for Effective Cyber Threat Response. 3rd edition.. Birmingham, UK: Packt Publishing Ltd., 2022.
  • Kävrestad, Joakim, Birath, Marcus, Clarke, Nathan, Fundamentals of digital forensics : a guide to theory, research, and applications. 3rd edition, Cham: Springer 2024.

Last updated: 2026-08-11 13:52:56