Chuyển đến nội dung chính

Bài đăng

Hiển thị các bài đăng có nhãn evidence

DRONE FORENSICS

There is a good article about Drone Forensics in eForensics Magazine. The synopsis for the article states: "The project begins to look into the broad range of UAVs that are likely to be encountered by police forces in the UK, specifically targeting the more budget end of the spectrum whilst still having all the functionality required to commit a range of crimes. The project focuses on post

What's happening with Contemporaneous Notes

Contemporaneous note (CN) taking is an essential process and procedure. The title is often used as a widely applied statement to include other associated processes and procedures, such as Simultaneous Notes (SN), etc.; as some of you know CN, SN, IN and VN are covered in my training courses for e-Discovery, (forensic) examination and evidence E3.   I have taken the opportunity to bring on board

U-N-I update on posts

- Diameter - Online Charging Systems (OCS)- Big / Fresh / Deep - Data : Huaewi overview- Hot technologies to know about- ARP.pcap- bgp.pcap- https.pcap- ICMP-ARP-OpenFlow1.0.pcap- ICMP-DHCP-DNS.pcap- Russians target Telegram App- Wireshark- Protocols Relevant to U-N-I- Industrial Networks Hit By WannaCry- IM Telegram Replay Attack - Android- Whisper Signal WhatsApp- Subpico Intelligent Appication

Universal Network Investigations

Just started a new LinkedIn group called 'Universal Network Investigations (UNI)'. It is a group only for those involved in the wider area of fixed, mobile and large-scale computer networks. The group exists to assist cyber, forensics and fault-finding investigations: to exchange observations and sharing 'intel' in a closed forum discussing fixed and mobile network investigations - trace data

Secrets and Evidence of Older Mobiles

It is good to learn that the Nokia 3310 may make a return, albeit with an Android operating system. The nostalgia for these types of mobile phones has clearly not been lost. What it might suggest is that consumers still want a mobile telephone to remain a mobile telephone and to look like one. The older mobile phones I have in mind though are the ones that are still used in examinations, 

Vacancy - Senior Evidence Handling Analyst

If you are interested in getting into Corporate investigations evidence handling, here is a good opportunity. Contact: Scott Barlow Corporate Recruiter at Epiq Systems. https://epiqsystems.tms.hrdepartment.com/jobs/1103/Senior-Evidence-Handling-AnalystLondon-London Senior Evidence Handling Analyst Job Code : 1103 Division : Epiq eDiscovery Solutions (EDS) Location :

Exploration - missing the micro-evidence

If you are new to or have all but forgotten the humble (U)SIM Card now maybe as good time as any to refresh on the physical state of (U)SIM Card, in particular the hardware, so to speak. To assist that refresh process, below are links to previously published materials that investigators and examiners might find useful: http://trewmte.blogspot.co.uk/2013/09/usim-examination-physical-pt1.html

Android Botnet for SMS

Another area where SMS text messages may not have received as much scrutiny is regarding messages sent by mobile botnets. If I may I will re-emphasise the following point, the purpose of the discussions here and below are not as a criticism about tools or processes that are used in extracting, harvesting and/or treating recovered data but that data analysis is still required and cannot be rushed.

Emotion Icons

From a recent discussion about knowledge/skills and experience and operators of forensics tools having a range of training, contributors comments varied as to exactly where the demarcation line lay regarding 'competence'. That is how far should an examiner go to valid the extracted and harvested data from a mobile phone. Bits and Bytes levels, carving out etc. brought some responses suggesting