- •The project has been funded by the European Commission. The Education, Audiovisual and
- •Digital Forensic Course
- •Digital Forensic Course
- •Digital forensics includes several sub-branches various types of devices, media or artifacts
- •The goal of computer forensics is to explain the current state of a
- •Software forensics is a field concerned with the evidence of intention from the
- •What is the Digital Forensic?
- •Why do we need digital forensic?
- •What is the Digital Forensic?
- •What is the Digital Forensic?
- •What is the Digital Evidence?
- •Typical investigation phases
- •Difficulties of digital forensics
- •Scenario of attacks:
- •Computer Systems
- •Tablet Devices
- •Storage Devices
- •Storage Devices
- •Storage Devices
- •Storage Devices
- •Storage Devices
- •Storage Devices
- •Storage Devices
- •Storage Devices
- •Peripheral Devices
- •Photocopiers
- •Mobile Telephones
- •Mobile Telephones
- •Photo and Video Recording
- •Digital Video Cameras
- •Video Recorders
- •Digital Audio Recorders
- •CCTV Cameras
- •Portable Media Players
- •Video Games Consoles
- •GPS Receivers
- •Potential Evidence
- •Network Attached Storage (NAS)
- •Network Interface Controller (NIC)
- •Network Hub
- •Network Switch
- •Network Router
- •Server
- •Firewall
- •Access Point
- •The project has been funded by the European Commission. The Education, Audiovisual and
- •Digital forensic standards
- •Information Security Incident Management Processes
- •Forensic Process
- •Forensic tools
- •Collection. The first phase in the process is to identify, label, record, and
- •Specialist "rapid response" by the evidence - digital evidence first responder - DEFR
- •Principle of evidence: the importance (value),
- •Key aspects of the handling of evidence:
- •Repeatability (повторяемость):
Video Recorders
•VHS Recorders
•Digital Video Recorders
VHS Video Tape |
Digital Video Recorder |
31
Digital Audio Recorders
•Recording of voice memos
•Play the memos back
•Recording of presentations or conversations
•Upload to computer capability
Digital Audio Recorders
32
CCTV Cameras
•Used for security
•Used as evidence in a variety of cases
•Record on storage media or live monitoring
•IP Cameras
Close Circuit Television (CCTV) Cameras
33
Portable Media Players
•Used from storing and playing audio, images and video files
•Usually internal flash memory or even hard disk
Portable Media Players
34
Video Games Consoles
•Used from playing games
•They use on board flash storage or hard disks
•More than just playing games ….
Video Games Consoles
35
GPS Receivers
•The Global Positioning System (GPS) is a space-based satellite navigation system that provides location and time information.
GPS Receivers
36
Potential Evidence
•Documents
•Photos
•Emails and attachments
•Databases
•Financial Information
•Internet Browsing History
•Chat Logs
•Event Logs
•GPS Locations
37
Network Attached Storage (NAS)
•NAS is similar to external hard-drives with the difference that they offer their disk space for a whole network instead of just a single PC
NAS’s with RAID Array
38
Network Interface Controller (NIC)
•NIC is a circuit board or card installed into a computer that allows it to connect to a network.
39
Network Hub
•Network Hub is a device for connecting multiple twisted pair or fibre optic ethernet devices together, making them act as a single network segment
Network Hub
40
