Digital Forensics Flashcards

1
Q

is a branch of Forensic Science that focuses on identifying, acquiring, processing, analyzing, and reporting on data stored electronically

A

Digital forensics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

is the process of storing, analyzing, retrieving, and preserving electronic data that may be useful in an investigation. It includes data from hard drives in computers, mobile phones, smart appliances, vehicle navigation systems, electronic door locks, and other digital devices (Simplilearn, 2023)

A

Digital forensics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

a component of almost all criminal activities and digital forensics support is crucial for law enforcement investigations

A

Electronic evidence/ Digital evidence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Steps of Digital Forensics

A
  1. Identification
  2. Preservation
  3. Analysis
  4. Documentation
  5. Presentation
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

this is the initial stage in which the individuals or devices to be analyzed are identified as likely sources of significant evidence

A

Identification

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

It focuses on safeguarding relevant electronically stored information (ESI) by capturing and preserving the crime scene, documenting relevant information such as visual images, and how it was obtained

A

Preservation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

It is a methodical examination of the evidence of the information gathered. This examination produces data objects, including system and user-generated files, and seeks specific answers and points of departure for conclusions

A

Analysis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

These are tried-and-true procedures for documenting the analysis’s conclusions, and they must allow other competent examiners to read through and duplicate the results

A

Documentation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

The collection of digital information, which may entail removing electronic devices from the crime/incident scene and copying or printing the device(s), is critical to the investigation.

A

Presentation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

It analyzes digital evidence obtained from laptops, computers, and storage media to support ongoing investigations and legal proceedings.

A

Computer Forensics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

It entails obtaining evidence from small electronic devices such as personal digital assistants, mobile phones, tablets, sim cards, and gaming consoles.

A

Mobile Device Forensics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Network or cyber forensics depends on the data obtained from monitoring and analyzing cyber network activities such as attacks, breaches, or system collapse caused by malicious software and abnormal network traffic.

A

Network Forensics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

This sub-specialty focuses on the extraction and analysis of digital images to verify authenticity and metadata and determine the history and information surrounding them.

A

Digital Image Forensics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

This field examines audio-visual evidence to determine its authenticity or any additional information you can extract, such as location and time intervals.

A

Digital Video/Audio Forensics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

It refers to the recovery of information from a running computer’s RAM and is also known as live acquisition.

A

Memory Forensics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Challenges in Digital Forensics

A
  • Extracting data from locked, or destroyed computing devices is one of the challenges that digital forensic investigators face
  • Finding specific data entries within massive amounts of data stored locally or in the cloud
  • Keeping track of the digital chain of custody
  • Ensuring data integrity throughout an investigation
17
Q

Advantages of Digital Forensics

A

*Enables Digital Evidence Analysis
*Aids in the Identification of Criminals
*It Is Capable of Recovering Deleted Data
*Enlightens on How Crimes Are Committed
*It Has the Potential to Be Used to Prevent Future Crimes

18
Q

Disadvantages of Digital Forensics

A

*Prolonged Procedure
*Requires Specialized Knowledge and Skills
*Can Be Costly
*Obtaining Evidence May Necessitate a Court Order
*Evidence Can Be Easily Destroyed or Manipulate