Cybercrime Investigations: Digital Forensics and Threat Intelligence
MTA
Tracking Hackers Across Borders
"Cybercrime Investigations: Digital Forensics and Threat Intelligence" provides a comprehensive guide to modern cybercrime detection, analysis, and prosecution. It begins by tracing the evolution of cybercrime from early hacking to sophisticated, globally coordinated threats such as ransomware, stateâsponsored APTs, and supplyâchain attacks, emphasizing the borderless nature of the internet and the challenges posed by emerging technologies like AI, quantum computing, and the metaverse. The book then lays the forensic foundations, covering evidence acquisition, preservation, chain of custody, and the differences between logical and physical imaging across Windows, Linux/macOS, mobile devices, and cloud environments, while stressing the importance of writeâblocking, hashing, and thorough documentation.
Building on these basics, the text delves into malware classification and analysis techniquesâstatic, dynamic, reverse engineering, and sandboxingâbefore exploring network forensics, traffic analysis, and log correlation to reconstruct attack paths. Hostâbased investigations detail Windows artifacts (registry, event logs, persistence mechanisms) and Linux/macOS specifics (file systems, logs, APFS/HFS+, Unified Logging). Mobile device forensics addresses acquisition methods, data extraction from iOS/Android, and challenges posed by encryption and proprietary systems. Cloud forensics shifts focus to APIâbased evidence, shared responsibility models, and logging from services like AWS, Azure, and Google Cloud. OpenâSource Intelligence (OSINT) and Dark Web investigations are presented as vital proactive tools for gathering threat intelligence, identifying adversaries, and mapping illicit infrastructure.
The latter sections integrate threat intelligence programs, attribution methodologies, and incident response strategies for ransomware, Business Email Compromise (BEC), and critical infrastructure attacks. Legal considerations, jurisdictional hurdles, Mutual Legal Assistance Treaties, and international cooperation through task forces and frameworks such as the Budapest Convention are examined in depth. Ethical hacking, penetration testing, and redâteam/blueâteam exercises are highlighted as ways to understand adversary TTPs. Finally, the book covers reporting and presenting digital evidence, expert testimony, and emerging trends, concluding with multinational case studies that illustrate how coordinated forensic, intelligence, and legal efforts dismantle global cybercriminal networks.
This book is designed for aspiring digital forensic examiners, cybersecurity professionals, law enforcement personnel, legal practitioners, and anyone seeking a comprehensive understanding of cybercrime investigation mechanisms. It provides practical skills and knowledge essential for those working to combat cyber threats in today's interconnected digital landscape, from technical analysts to decision-makers involved in cross-border investigations and threat intelligence operations.
August 9, 2026
Nonfiction
English
53,989 words
3 hours 47 minutes
Click to order this hardcover:
Buy NowPrint copy is made to order and ships worldwide. Includes the ebook free, ready to read instantly.
$5 account credit for all new MixCache.com accounts, usable toward any ebook purchase!*