- •The project has been funded by the European Commission. The Education, Audiovisual and
- •Digital Forensic Course
- •Digital Forensic Course
- •Digital forensics includes several sub-branches various types of devices, media or artifacts
- •The goal of computer forensics is to explain the current state of a
- •Software forensics is a field concerned with the evidence of intention from the
- •What is the Digital Forensic?
- •Why do we need digital forensic?
- •What is the Digital Forensic?
- •What is the Digital Forensic?
- •What is the Digital Evidence?
- •Typical investigation phases
- •Difficulties of digital forensics
- •Scenario of attacks:
- •Computer Systems
- •Tablet Devices
- •Storage Devices
- •Storage Devices
- •Storage Devices
- •Storage Devices
- •Storage Devices
- •Storage Devices
- •Storage Devices
- •Storage Devices
- •Peripheral Devices
- •Photocopiers
- •Mobile Telephones
- •Mobile Telephones
- •Photo and Video Recording
- •Digital Video Cameras
- •Video Recorders
- •Digital Audio Recorders
- •CCTV Cameras
- •Portable Media Players
- •Video Games Consoles
- •GPS Receivers
- •Potential Evidence
- •Network Attached Storage (NAS)
- •Network Interface Controller (NIC)
- •Network Hub
- •Network Switch
- •Network Router
- •Server
- •Firewall
- •Access Point
- •The project has been funded by the European Commission. The Education, Audiovisual and
- •Digital forensic standards
- •Information Security Incident Management Processes
- •Forensic Process
- •Forensic tools
- •Collection. The first phase in the process is to identify, label, record, and
- •Specialist "rapid response" by the evidence - digital evidence first responder - DEFR
- •Principle of evidence: the importance (value),
- •Key aspects of the handling of evidence:
- •Repeatability (повторяемость):
Storage Devices
USB Data Storage Devices
•Is a standard that defines the protocols for communication, connection and power supply for devices that are to be connected
21
Storage Devices
USB Data Storage Devices
• Not all devices are what they seem !!!!
22
Storage Devices
USB Data Storage Devices
• Not all devices are what they seem !!!!
23
Storage Devices
Data Storage Tape Disks
•Data stored on tape is more likely to be encountered is a business
•Tapes are normally used for backup
Linear Tape-Open (LTO) Storage Tapes |
LTO Tape Drive |
24
Peripheral Devices
•Peripherals are devices are not an integral part of the computer but connect to it to improve its capabilities
Printer
Fax Machine |
Scanner |
25
Photocopiers
•A photocopier is a machine that
makes paper copies of documents and other visual images quickly and cheaply
•Found in businesses
•Internal or removable memory
26
Mobile Telephones
Mobile Telephones are used for many tasks and can hold a large amount data often very important.
Mobile Phones
27
Mobile Telephones
Sim Card: A subscriber identity module (SIM) is an integrated circuit that securely stores the international mobile subscriber
identity (IMSI) and the related key used to identify and authenticate subscribers on mobile telephony devices
28
Photo and Video Recording
Digital cameras can hold photos and video either in embedded memory or memory cards
“Spy” Digital Cameras
29
Digital Video Cameras
•Digital Video Cameras can hold photos and video either in embedded memory or memory cards
•Its important to tell the difference
Digital Video Cameras
30
