W3: Digital Forensics Flashcards
What is digital forensics and it’s subcategories
The process of restoring, retrieving and analysing material stored and transferred in a digital way to reconstruct past events
- device forensics
- network forensics
- cloud forensics
What is the history of digital forensics
In 1981, Ian Murphy (captain zap) was the first person who was convicted of a cybercrime and received a fine
1990s, cybercrime became a recognised term
1980s, honeypot trap
Examples of cybercrime
Cyber bullying
Phishing
Identify theft
Scams
Hacking
Dark web
What are cyber dependent crimes
Committed through the use of technology where the device is both the tool and the target e,g hacking
What are cyber enabled crimes
Things that have existed before yet can be transferred online e.g bullying
What are cyber enabled crimes
Things that have existed before yet can be transferred online e.g bullying
What is the digital forensics process
Collection
Examination
Analysis
Reporting
Present
How can evidence be found via phones and computers
Phones- SIM card, memory cards
Computers- mouse, keyboard, power supply
How to handle phones for processing
Sealed evidence bag
Switch off phone
Biological Vs digital evidence
Take photo of screen
How to handle computers for processing
Document connection of cables and devices
Unplug everything, DO NOT turn off
Use evidence bags
Transport
What are the principles investigators follow
Data must be the same when first collected and presented
Must be competent to show relevant data
Record should be created and preserved
Person in charge just remain responsible