Definitions

Before getting into the core of what this book is about, some definitions are in order. It is essential to have a common understanding of the terms used in order to avoid misunderstandings. For example, consider two people having a conversation, and one uses the term “car.” What does that mean? The speaker may be referring to an H2 Hummer, while the listener may be thinking of a Mitsubishi Eclipse. During the course of the conversation, the type of car might matter, so at some point, the speaker needs to ensure that his audience understands what he means by a “car.” Clear definitions of terms are required so that there is a common understanding.

For the purposes of this book, a computer security incident (or simply incident) is defined ...

Get Windows Forensics and Incident Recovery now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.