Quiz 1 Flashcards
In the case of Dennis Rader better known as the BTK Killer, investigators got the lead they needed to arrest and seal the suspect’s fate through
Examination of the file’s metadata
The principle that says, in the physical world, whenever perpetrators enter of leave a crime scene, they will leave something behind and take something with them is
Locard’s Exchange Principle
In a civil case, both parties are generally entitled to examine the evidence that will be used against them before trial. This legal process is known as “scientific method.” True or False?
False
This term refers to any process in which electronic data is sought, located, secured, and searched with the intent of using it as evidence in a civil or criminal legal case.
Electronic discovery
Several organizations help establish the standards and best practices used in digital forensics. These organizations include all of the following except
The WTCC Computer Technologies Department
In Afghanistan and Iraq, armed forces are exploiting intelligence collected from digital devices brought straight from the battlefield The process is known as
DOMEX
The application of computer science and investigative procedures for a legal purpose involving the analysis of digital evidence after proper search authority, chain of custody, validation with mathematics, use of validated tools, repeatability, and possible expert presentation is the definition of
Digital Forensics
In a legal sense, to be considered an expert in a court of law, one doesn’t have to possess an advanced academic degree. True or False?
True
The name given to the mathematical process (via an algorithm) that produces a unique value that is essentially the digital “fingerprint” of a particular file is known as bitstream imaging. True or False?
False
Put these phases of a digital forensic process in the proper order (not all phases represented.
Imaging/hashing, Analysis, Repeatability, Reporting
According to the National Institute of Standards and Technology (NIST), digital forensics involves scientifically examining and analyzing data from computer storage media so that it can be used as evidence in court. True or False?
False
If you turn evidence over to law enforcement and begin working under their direction, you have become an agent of law enforcement, and are subject to the same restrictions on search and seizure as a law enforcement agent. True or False?
True
After the evidence has been presented in a trial by jury, the jury must deliver a(n) _______.
verdict
User groups for a specific type of system can be very useful in a forensics investigation. True or False?
True
Which option below is not a standard systems analysis step?
Share evidence with experts outside of the investigation.