First-person ( Tyus)
Hey class,
When it comes down to the process of digital forensics, it is broken into five parts. The five steps are identification, preservation, analysis, documentation, and presentation. For identification, it includes things like the evidence that is present, where it is stored, and how it is stored. Preservation is how it prevents people from tampering with digital evidence using a digital device. Analysis allows for investigators to reconstruct fragments of data and draw conclusions based on evidence. Documentation consists of a record of all the visible data that was collected to help create the crime scene. Lastly, would be a presentation that summarizes the information that was found throughout the process.
There are several challenges that come with digital forensics. Some examples are extensive use of internet access, easy availability of hacking tools, lack of physical evidence, large amounts of storage, and the technological changes that require an upgrade or change to solutions. Digital forensics is important for multiple reasons which are identifying the cause and intent of cyberattacks, the duration of unauthorized access on the network, searching for data access, helping with security hygiene, and finding hacker tools.
Rungta, K. (n.d.). What is digital forensics? History, process, types, challenges. Meet Guru99 – Free Training Tutorials & Video for IT Courses. https://www.guru99.com/digital-forensics.html
Why is digital forensics important? (2021, June 1). Packetlabs. https://www.packetlabs.net/posts/digital-forensics/
Second person ( Judy)
Hello everyone,
In this our final discussion board we are discussing the various cyber and digital forensics reports. The typical limitations of these tools and how they can be identified in the report. We are also to discuss typical limitations on the tools used and how this may be identified in the report. The first tool I’ve chosen is EnCase. It is used to recoup proof of attack from the hard drive Besides being very expensive, it can take a long time to process large compound files and mailboxes. Another is X-Ways or XEF, it is a Windows based licensed software. It offers usefulness when it comes to computer forensics. However, the user interface is complicated and it does not support Bitlocker.
In an attempt to identify how the scope of the investigation plays a role in the content of the report. I would have to refer to the article in Infosecinstitute, Identify how the scope of the investigations plays a role in the content of the digital forensics report. It says that finding the right tool to use depends upon the kind or type of case that the forensic investigators are currently working on.
References:
https://resources.infosecinstitute.com/topic/comparison-popular-computer-forensics-tools/
https://resources.infosecinstitute.com/topic/computer-forensics-investigation-case-study/
Last Completed Projects
| topic title | academic level | Writer | delivered |
|---|
