“The Skills And Resilience To Do One Of The Hardest Jobs In Policing” — Why This DFIR Recruitment Language Gets The Evidence Wrong

Hero Image

Does recruiting for “resilience” risk putting responsibility in the wrong place? Paul Gullon-Scott looks at what the evidence says about digital forensic well-being, workload and organisational support, and why the language we use matters....

Belkasoft Named A Major Player In The IDC MarketScape: Worldwide Digital Forensics Platforms 2026 Vendor Assessment

Belkasoft Named A Major Player In The IDC MarketScape: Worldwide Digital Forensics Platforms 2026 Vendor Assessment

Belkasoft has been named a Major Player in the IDC MarketScape: Worldwide Digital Forensics Platforms 2026 Vendor Assessment - a milestone that reflects the maturity of Belkasoft X and the company's continued innovation in AI-powered digital forensics....read more

Cellebrite Genesis: Turn Digital Evidence Into Actionable Leads In Minutes

Cellebrite Genesis: Turn Digital Evidence Into Actionable Leads In Minutes

See how Cellebrite Genesis uses agentic AI to help enterprise investigative teams cut through complex digital evidence, uncover connections, and move from data to actionable leads in minutes....read more

Digital Forensics Round-Up, September 02 2026

Digital Forensics Round-Up, September 02 2026

Read the latest DFIR news - SANS AI frameworks for DFIR, AI hackathon tools, investigator well-being, macOS unlock artifacts, cross-platform log analysis, Apple Health forensics, and more....read more

Firefox Forensics

I was showing someone a trick to export Firefox SQLite tables to a spread sheet, and while she is a forensics person, she had never ever heard of this trick. It is neat enough to know when working off an

Retrieving Digital Evidence: Methods, Techniques and Issues

This article describes the various types of digital forensic evidence available on users’ PC and laptop computers, and discusses methods of retrieving such evidence. A recent research conducted by Berkeley scientists concluded that up to 93% of all information never

Authenticating Internet Web Pages as Evidence: a New Approach

By John Patzakis [1] and Brent Botta [2] Previously, in Forensic Focus, we addressed the issue of evidentiary authentication of social media data (see previous entries here and here). General Internet site data available through standard web browsing, instead of

Parallels hard drive image converting for analysis

The other day, talking to one of the analysts in Dallas, a question emerged about analyzing Parallels’ virtual machine hard drives. To my surprise, I did not find many help on this issue on-line and did not find tools that

Retrieving Digital Evidence: Methods, Techniques and Issues

by Yuri Gubanov [email protected] Belkasoft Ltd. http://belkasoft.com Abstract This article describes the various types of digital forensic evidence available on users’ PC and laptop computers, and discusses methods of retrieving such evidence. Download article in PDF format Introduction A recent 

A Quick Look at Exchange Forensics

A growing number of enterprises—and their IT staffs—are becoming increasingly concerned about the range of threats posed by electronic attack. Couple that with the high incidence of business litigation, and the high regulatory barriers, present in the US and EU,

Computer crime given low priority by Irish firms

Irish firms are failing to treat the threat of computer crime as seriously as they should, a new survey has revealed, with a lack of funding in information security and insufficient employee awareness of threats identified. According to the survey

Belkasoft releases Evidence Center v4.1 featuring deeper EnCase integration

Belkasoft releases Belkasoft Evidence Center 2012 version 4.1 featuring deeper EnCase v7 integration and more than 210 supported artifact types. The company’s flagship forensic tool, Belkasoft Evidence Center, now supports new EnCase v7 EX01 evidence files as well as E01,

Interview with John H. Riley, Bloomsburg University of Pennsylvania

John, can you tell us something about your background and why you decided to teach digital forensics? First, thanks for the opportunity to discuss our program. We’re really proud of what we’ve accomplished here and believe we’re contributing to the

Parallels hard drive image converting for analysis

Abstract The other day, talking to one of the analysts in Dallas, a question emerged about analyzing Parallels’ virtual machine hard drives.  To my surprise, I did not find many help on this issue on-line and did not find tools