Become a Certified Hacking Forensic Investigator (C|HFI)


Become a Certified Hacking Forensic Investigator (CHFI)

Computer Hacking Forensic Investigator (C|HFI) | ANSI accredited

EC-Council’s Certified Hacking Forensic Investigator (C|HFI) is the only comprehensive ANSI accredited, lab-focused program in the market that gives organizations vendor-neutral training in digital forensics. C|HFI provides its attendees with a firm grasp of digital forensics, presenting a detailed and methodological approach to digital  forensics and evidence analysis that also pivots around Dark Web, IoT, and Cloud Forensics. The tools and techniques covered in this program will prepare the learner for conducting digital investigations using ground-breaking digital forensics technologies.

The program equips candidates with the necessary skills to proactively investigate complex security threats, allowing them to investigate, record, and report cybercrimes to prevent future attacks.

The course aligns with all the crucial forensic job roles across the globe.

It is an ANSI 17024 accredited Certification Program, mapped to the NICE 2.0 framework and Approved under U.S. Defense of Department (DoD) 8570.

How You Will Benefit

A BREACH can be BRUTAL. Investing in building an expert in-house forensics team with C|HFI training and certification is a strategic move for enterprises looking to safeguard their stakeholders’ interests as well as their own. C|HFI empowers their existing team with learning the latest investigation practices.

Detailed Methodological Learning Approach

C|HFI presents a methodological approach to computer forensic including searching and seizing, chain-of-custody, acquisition, preservation, analysis and reporting of digital evidence.

Dark Web & IoT Forensics

The first certification program to offer  you  Dark Web and IoT Forensics modules.

Extensive Coverage on Malware Forensics

Covers latest malware samples like Emotet and Eternal Blue, also known as WannaCry.

Forensic Methodologies for Cloud Infrastructure

Master tools and techniques to ensure security across various cloud platforms — Amazon Web Services, Microsoft Azure Cloud, and Google Cloud Platform.

50 GB of Crafted Evidence Files

C|HFI v10 provides you with 50 GB of crafted evidence files for investigation purposes which helps to have hands-on experience in evidence collection.

50+ Complex Labs

The only program that provides thorough learning with a simulated environment with 50+ complex labs to ensure you obtain must have skills for your next job.

Lead The Digital Forensics Movement By Becoming A Computer Hacking Forensic Investigator with EC-Council

Program Information

Program Information

What's New in CHFI

Whats new in CHFI

CHFI v10 captures all the essentials of digital forensics analysis and evaluation required for the modern world — tested and approved by veterans and top practitioners of the cyber forensics industry. From identifying the footprints of a breach to collecting evidence for a prosecution, CHFI v10 handholds students through every step of the process with experiential learning. CHFI v10 is engineered by industry practitioners for professionals including those such as forensic analysts, cybercrime investigator, cyber defense forensic analyst, incident responders, information technology auditor, malware analyst, security consultant, chief security officers and aspirants alike.

CHFI Course Benefits

  • Inclusion Of Critical Modules In Darkweb Forensic And IoT Forensics
  • Significant Coverage Of Forensic Methodologies For Public Cloud Infrastructure, Including Amazon AWS And Microsoft Azure
  • Massive Updates On All Modules In CHFI
  • Inclusion Of Latest Forensic Tools Including Splunk, DNSQuerySniffer Etc
  • Addition Of New Techniques Such As Defeating Anti-Forensic Technique, Windows ShellBags Including Analyzing LNK Files And Jump Lists
  • Extensive Coverage Of Malware Forensics (Latest Malware Samples Such As Emotet And EternalBlue)
  • Now More Than 50GB Of Crafted Evidence Files For Investigation Purposes
  • More Than 50% Of New And Advanced Forensic Labs
  • In-Depth Focus On Volatile And Non-Volatile Data Acquisition And Examination Process (RAM Forensics, Tor Forensics, Etc.
  • Accepted And Trusted By Cybersecurity Practitioners Across Fortune 500 Globally.

Course Outline

Course Outline

Module 01: Computer Forensics in Today’s World
Module 02: Computer Forensics Investigation Process
Module 03: Understanding Hard Disks and File Systems
Module 04: Data Acquisition and Duplication
Module 05: Defeating Anti-Forensics Techniques
Module 06: Windows Forensics
Module 07: Linux and Mac Forensics
Module 08: Network Forensics
Module 09: Investigating Web Attacks
Module 10: Dark Web Forensics
Module 11: Database Forensics
Module 12: Cloud Forensics
Module 13: Investigating Email Crimes
Module 14: Malware Forensics
Module 15: Mobile Forensics
Module 16: IoT Forensics

Who is it for?

Who is it for?

The CHFI program is designed for all IT professionals involved with information system security, computer forensics, and incident response.

Target Audience
  • Police and other law enforcement personnel
  • Defense and Security personnel
  • e-Business Security professionals
  • Legal professionals
  • Banking, Insurance, and other professionals
  • Government agencies
  • IT managers
  • Digital Forensics Service Providers

About the Exam

The CHFI certification is awarded after successfully passing exam EC0 312-49. CHFI EC0 312-49 exams are available at ECC exam centers around the world.

Passing Score

In order to maintain the high integrity of our certification exams, EC-Council Exams are provided in multiple forms (i.e., different question banks). Each form is carefully analyzed through beta testing with an appropriate sample group under the purview of a committee of subject matter experts, ensuring that each of our exams is not only academically sound, but also has “real world” applicability. We apply an internal process to determine the difficulty rating of each question. The individual rating then contributes to an overall “Cut Score” for each exam form. To ensure each form has equal assessment standards, cut scores are set on a “per exam form” basis. Depending on which exam form is challenged, cut scores can range from 60% to 85%.
  • Number of Questions: 100
  • Exam Prefix: 312-38 (ECC EXAM)
  • Test Duration: 4 Hours
  • Test Format: Multiple Choice
  • Test Delivery: ECC Exam

Job Roles

Certified Hacking Forensic Investigator v10 has been designed by industry experts to provide an unbiased approach to applying complex investigation practices, empowering  Forensic Professionals to:

  • Play an active role in investigating and preserving digital and non-digital evidence of an attack.
  • Counter to the series of compromises.
  • Use threat intelligence to anticipate and alert cyber teams in case of future attacks.

Common Job Roles

  • Forensic Computer Analyst
  • Computer Forensics Criminal Investigator
  • Intelligence Technology Analyst
  • Disaster Recovery Expert
  • Cryptographer
  • Cryptanalyst
  • Computer Crime Investigator
  • Mobile Forensics Expert
  • Information Technology Auditor
  • Digital Crime Specialist
  • Cyber Defense Forensic Analyst
  • Forensic Analyst
  • Cyber Crime Investigator
  • Information System Security Professional
  • Forensic Accountant
  • Information Security Analyst
  • Malware Analyst
  • Computer Forensic Examiner
  • Security Consultant
  • Computer Forensics Technician



Download Now

Why People Love C|HFI

Accreditations, Recognitions & Endorsements