Overview
Syllabus
Intro
TALKIN' ABOUT REAL FORENSICS...
DEFINE & WHY CHARACTERISTICS PRINCIPLES PROCEDURES RESOURCES
DEFINE & WHY (what is digital forensics)...
WHAT IS FORENSICS ?
E-DISCOVERY (CIVIL LITIGATION)
ADMINISTRATIVE INVESTIGATIONS
MILITARY
ACCURATE RECONSTRUCTION OF EVENTS
ANSWER KEY QUESTIONS
CHARACTERISTICS (of digital evidence)...
MULTIPLE LOCATIONS
PRINCIPLES (of digital evidence)...
Know the Forensic Commandments (...and when to SIN)
PROTECT the evidence
INTEGRITY (NO CHANGES)
PREVIEW (Forensically sound "sneak peek")
DOCUMENTATION IS CRITICAL
Forensically CLEAN Target Drive
Use WRITE BLOCKER
Live System v. Dead System (debate)
MARK the evidence
PACKAGE the evidence
SENSE OF URGENCY to preserve
SHIELD mobile devices
SOLID STATE DRIVES are the Devil
SECURE evidence storage
Training and certifications
Tool VALIDATION
Use FORENSIC Tools
DON'T poke it with a stick
GREAT QUESTION!
Resources and References