W3: Digital Forensics Flashcards

1
Q

What is digital forensics and it’s subcategories

A

The process of restoring, retrieving and analysing material stored and transferred in a digital way to reconstruct past events
- device forensics
- network forensics
- cloud forensics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the history of digital forensics

A

In 1981, Ian Murphy (captain zap) was the first person who was convicted of a cybercrime and received a fine
1990s, cybercrime became a recognised term
1980s, honeypot trap

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Examples of cybercrime

A

Cyber bullying
Phishing
Identify theft
Scams
Hacking
Dark web

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are cyber dependent crimes

A

Committed through the use of technology where the device is both the tool and the target e,g hacking

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are cyber enabled crimes

A

Things that have existed before yet can be transferred online e.g bullying

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are cyber enabled crimes

A

Things that have existed before yet can be transferred online e.g bullying

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the digital forensics process

A

Collection
Examination
Analysis
Reporting
Present

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

How can evidence be found via phones and computers

A

Phones- SIM card, memory cards
Computers- mouse, keyboard, power supply

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

How to handle phones for processing

A

Sealed evidence bag
Switch off phone
Biological Vs digital evidence
Take photo of screen

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How to handle computers for processing

A

Document connection of cables and devices
Unplug everything, DO NOT turn off
Use evidence bags
Transport

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are the principles investigators follow

A

Data must be the same when first collected and presented
Must be competent to show relevant data
Record should be created and preserved
Person in charge just remain responsible

How well did you know this?
1
Not at all
2
3
4
5
Perfectly