Digital Forensics 1 Flashcards

1
Q

Information that helps explain other evidence. And example is a chart that explains a technical concept to the judge and jury.

A

Demonstrative Evidence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

The process of acquiring and analyzing information stored on physical storage media, such as computer hard drives or smartphones.

A

Disk Forensics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

The resulting signal, stream, or data file

A

Sometimes called the package, stego file, or covert message

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

The proportion of bytes, samples, or other signal elements modified to encode the payload. Is typically expressed as a number between 0 and 1.

A

Encoding Density

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

How the instructions in a computer’s BIOS are stored?

A

EEPROM

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

When a suspect prevents data from being written to disk by storing it in memory using memory-resident rootkits, it is called __________.

A

Data Contraception

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

This is the space that remains on a hard drive if the partitions do not use all the available space.

A

Volume Slack

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Basis Technology invented an open file standard format with three variations, all supported by Sleuth Kit and Autopsy. The name of this file format is what?

A

The Advanced Forensic Format

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Negated AND (NAND) gate-based flash memory, which retains memory even without power.

A

SSD’s use which type of flash memory?

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

The standard for e-mail format, including headers, is ???

A

RFC 2822

How well did you know this?
1
Not at all
2
3
4
5
Perfectly