Authenticating Internet Web Pages as Evidence: a New Approach

Previously, in Forensic Focus, we addressed the issue of evidentiary authentication of social media data. General Internet site data available through standard web browsing, instead of social media data provided by APIs or user credentials, presents slightly different but just

Interview with Jess Garcia, founder of One eSecurity

Let's say we're looking at a cyber-crime scene comprised of several still powered on computers as well as confiscated smartphones. When the forensic investigator arrives, what does his workflow look like? Mobile devices are typically the most volatile of all

Retrieving Digital Evidence: Methods, Techniques and Issues

This article describes the various types of digital forensic evidence available on users’ PC and laptop computers, and discusses methods of retrieving such evidence. A recent research conducted by Berkeley scientists concluded that up to 93% of all information never

Parallels hard drive image converting for analysis

The other day, talking to one of the analysts in Dallas, a question emerged about analyzing Parallels’ virtual machine hard drives. To my surprise, I did not find many help on this issue on-line and did not find tools that

A Quick Look at Exchange Forensics

A growing number of enterprises—and their IT staffs—are becoming increasingly concerned about the range of threats posed by electronic attack. Couple that with the high incidence of business litigation, and the high regulatory barriers, present in the US and EU,

Computer crime given low priority by Irish firms

Irish firms are failing to treat the threat of computer crime as seriously as they should, a new survey has revealed, with a lack of funding in information security and insufficient employee awareness of threats identified. According to the survey

Belkasoft releases Evidence Center v4.1 featuring deeper EnCase integration

Belkasoft releases Belkasoft Evidence Center 2012 version 4.1 featuring deeper EnCase v7 integration and more than 210 supported artifact types. The company’s flagship forensic tool, Belkasoft Evidence Center, now supports new EnCase v7 EX01 evidence files as well as E01,

Interview with John H. Riley, Bloomsburg University of Pennsylvania

John, can you tell us something about your background and why you decided to teach digital forensics? First, thanks for the opportunity to discuss our program. We’re really proud of what we’ve accomplished here and believe we’re contributing to the

An Introduction to Penetration Testing – Part 1

In an earlier article, many moons ago, I stated my opinion that Forensics and Security were opposite sides of the same coin. I’ve felt very strongly that my skills as a Security Consultant have only been strengthened and expanded by

Internet Evidence Finder (IEF) v5.5 First to Support IE 10 and Cloud Apps

With a strong commitment to helping thousands of its customers in law enforcement, military, government and corporate organizations retrieve Internet evidence from the broadest range of artifacts, JADsoftware has unveiled v5.5 of its industry leading data recovery software, Internet Evidence