CW+ Premium Content/E-Handbooks

Thank you for joining!
Access your Pro+ Content below.
March 2015

Mac OS X persistent evidences for forensic purposes

Sponsored by

This article in our Royal Holloway Information Security Thesis Series provides a technical explanation of how Mac OS X persistence evidences can be extracted for forensic investigation.

Table Of Contents


  • Mac OS X, the hybrid platform
  • Types of evidences
  • Implementation using the Plaso forensics framework

More CW+ Content

View All