SlideShare a Scribd company logo
Group Members are as:-
1.Royson Pinto
COMPUTER
FORENSICS
CONTENTS
Definition of Computer Forensics
History of Computer Forensics
Steps Of Computer Forensics
Certifications for Computer Forensic
Computer Forensic Requirements
Collecting Evidence
Uses of Computer forensics
Advantages of Computer Forensics
Disadvantages of Computer Forensics
Computer forensics labs and centers in India
Conclusion
References
THE FIELD OF
COMPUTER FORENSICS
What is Computer Forensics?
 Computer forensics involves the preservation,
identification, extraction, documentation, and
interpretation of computer media for evidentiary
and root cause analysis
 Computer forensics is the process of identifying,
preserving, and analyzing data and technical items
for evidence that will be used in court
THE FIELD OF
COMPUTER FORENSICS
Used to obtain potential legal evidence
Evidence might be required for a wide range of computer
crimes and misuses
Multiple methods of computer forensics are:
 Discovering data on computer system
 Recovering deleted, encrypted, or damaged file information
 Monitoring live activity
 Detecting violations of corporate policy
Information collected assists in arrests, prosecution,
termination of employment, and preventing future illegal
activity
THE FIELD OF
COMPUTER FORENSICS
Example:-
Recovering thousands of deleted emails
Performing investigation post employment
termination
Recovering evidence post formatting hard
drive
HISTORY OF COMPUTER
FORENSICS
1970s
 First crimes cases involving computers, mainly financial fraud
1980’s
 Financial investigators and courts realize that in some cases all the records and evidences were
only on computers.
 Norton Utilities, “Un-erase” tool created
 Association of Certified Fraud Examiners began to seek training in what became computer
forensics
 SEARCH High Tech Crimes training created
 Regular classes began to be taught to Federal agents in California and at FLETC in Georgia
 HTCIA formed in Southern California
HISTORY OF COMPUTER
FORENSICS
1984
 FBI Magnetic Media Program created... this later becomes the
Computer Analysis and Response Team (CART)
1993
 First International Conference on Computer Evidence held
1995
 International Organization on Computer Evidence (IOCE)
formed
HISTORY OF COMPUTER
FORENSICS
1997
 The G8 countries declared that "Law enforcement personnel
must be trained and equipped to address high-tech crimes" in
the Moscow
1998
 In March G8 appointed IICE to create international
principles for the procedures relating to digital evidence
1998
 INTERPOL Forensic Science Symposium
HISTORY OF COMPUTER
FORENSICS
1999
 FBI CART case load exceeds 2000 cases,
 examining 17 terabytes of data
2000
 First FBI Regional Computer Forensic Laboratory
established
2003
 FBI CART case load exceeds 6500 cases,
 examining 782 terabytes of data
STEPS OF COMPUTER
FORENSICS
 According to many professionals, Computer Forensics is a four (4) step process
Acquisition
 Physically or remotely obtaining possession of the computer, all network
mappings from the system, and external physical storage devices
Identification
 This step involves identifying what data could be recovered and
electronically retrieving it by running various Computer Forensic tools and
software
suites
STEPS OF COMPUTER
FORENSICS
Evaluation
 Evaluating the information/data recovered to
determine if and how it could be used again the
suspect for employment termination or prosecution
in court
Presentation
 This step involves the presentation of evidence discovered in a manner
which is understood by lawyers, non-technically staff/management, and
suitable as evidence as determined by United States and internal laws
CERTIFICATION FOR COMPUTER
INVESTIGATIVE SPECIALISTS
CEECS (Certified Electronic Evidence Collection Specialist Certification)
Awarded to individuals who complete the CEECS regional
certification course
Also awarded to individuals in the Certified Forensic
Computer Examiner course that successfully pass the written
test
CERTIFICATION FOR
FORENSIC COMPUTER
EXAMINER
Internal Certification Training Program
 Must successfully complete two week training course offered
by IACIS and correspondence proficiency problems
External Certification Testing Process
 Not a training course
 Testing process
Active Law Enforcement
Individuals qualified for IACIS membership
Recertification
 Every three years must complete recertification process
Must be in good standing with IACIS
Complete proficiency test
A COMPUTER FORENSIC
SPECIALIST PROMISES TO:
 Do not delete, damage or alter any evidence
 Protect the computer and files against a virus
 Handle all evidence properly to prevent any future damage
 Keep a log of all work done and by whom
 Keep any Client-Attorney information that is gained confidential
COMPUTER FORENSIC
REQUIREMENTS
 Hardware
 Familiarity with all internal and external devices/components of
a computer
 Thorough understanding of hard drives and settings
 Understanding motherboards and the various chipsets used
 Power connections
 Memory
 BIOS
 Understanding how the BIOS works
 Familiarity with the various settings and limitations of the BIOS
COMPUTER FORENSIC
REQUIREMENTS
 Operation Systems
 Windows 3.1/95/98/ME/NT/2000/2003/XP
 DOS
 UNIX
 LINUX
 Software
 Familiarity with most popular software packages
such as MS Office
 Forensic Tools
 Familiarity with computer forensic techniques and the
software packages that could be used
 Make Exact copies of all hard drives
& disks using computer software
 Date and Time stamped on each
file; used for timeline
 Protect the Computer system
 Avoid deletion, damage,
viruses and corruption
 Discover files
 Normal Files
 Deleted Files
 Password Protected Files
 Hidden Files
 Encrypted Files
 Reveal all contents of hidden files
used by application and operating
system
 Access contents of password
protected files if legally able to do so
 Analyze data
 Print out analysis
 Computer System
 All Files and data
 Overall opinion
 Provide expert
consultation/testimony
COLLECTING EVIDENCE
USES OF COMPUTER
FORENSICS
 Criminal Prosecutors
 Rely on evidence obtained from a computer to prosecute
suspects and use as evidence
 Civil Litigations
 Personal and business data discovered on a computer can be
used in fraud, divorce, harassment, or discrimination cases
 Insurance Companies
 Evidence discovered on computer can be
used to mollify costs (fraud, worker’s
compensation, arson, etc)
USES OF COMPUTER
FORENSICS
 Private Corporations
 Obtained evidence from employee computers can
be used as evidence in harassment, fraud, and embezzlement
cases
 Law Enforcement Officials
 Rely on computer forensics to backup search warrants and
post-seizure handling
 Individual/Private Citizens
 Obtain the services of professional computer forensic
specialists to support claims of harassment, abuse, or
wrongful termination from employment
ADVANTAGES OF COMPUTER
FORENSICS
Ability to search
through a massive
amount of data
Quickly
Thoroughly
In any language
DISADVANTAGES OF
COMPUTER FORENSICS
 Digital evidence accepted
into court
 must prove that there is no
tampering
 all evidence must be fully
accounted for
 computer forensic specialists
must have complete knowledge
of legal requirements, evidence
handling and storage and
documentation procedures
DISADVANTAGES OF
COMPUTER FORENSICS
 Costs
 producing electronic records & preserving them is
extremely costly ,
 Presents the potential for exposing privileged
documents
 Legal practitioners must have extensive computer
knowledge
COMPUTER FORENSICS LABS
AND CENTERS IN INDIA
1. cyber college, Dehradun
2. Secure India (A Group of Cyber Security Specialists), Muzaffarnagar, Uttar
Pradesh
3. E2Labs Research & Development Center, Hyderabad, Andhra Pradesh
4. Agape Inc, Nagpur, Maharashtra
5. Appin Technology Lab, Hyderabad, Andhra Pradesh
6. Shoeb Online, Mumbai, Maharashtra
7. ForensicsGuru.com, New Delhi
8. I.TECH COMPUTERS - DATA FORENSICS & DATA
RECOVERY, Mumbai
9. Indiaforensic Center of Studies , Pune
10. Focus Forensics Technology Private Limited,Delhi
CONCLUSION
With computers becoming more and more involved
in our everyday lives, both professionally and
socially, there is a need for computer forensics.
This field will enable crucial electronic evidence to
be found, whether it was lost, deleted, damaged, or
hidden, and used to prosecute individuals that
believe they have successfully beaten the system.
REFERENCES
http://www.allstateinvestigation.com/ComputerForen
sicServices.htm
Computer Forensics, Inc. http://www.forensics.com/
 http://www.computer-forensic.com/index.html
http://www.forensics-
research.com/index.php/computer-forensics/tools/

More Related Content

What's hot

Digital Forensic: Brief Intro & Research Challenge
Digital Forensic: Brief Intro & Research ChallengeDigital Forensic: Brief Intro & Research Challenge
Digital Forensic: Brief Intro & Research Challenge
Aung Thu Rha Hein
 
Computer forensics toolkit
Computer forensics toolkitComputer forensics toolkit
Computer forensics toolkitMilap Oza
 
Analysis of digital evidence
Analysis of digital evidenceAnalysis of digital evidence
Analysis of digital evidence
rakesh mishra
 
L6 Digital Forensic Investigation Tools.pptx
L6 Digital Forensic Investigation Tools.pptxL6 Digital Forensic Investigation Tools.pptx
L6 Digital Forensic Investigation Tools.pptx
Bhupeshkumar Nanhe
 
computer forensics
computer forensicscomputer forensics
computer forensics
Vaibhav Tapse
 
Cyber Forensics Overview
Cyber Forensics OverviewCyber Forensics Overview
Cyber Forensics Overview
Yansi Keim
 
Computer forensics and its role
Computer forensics and its roleComputer forensics and its role
Computer forensics and its roleSudeshna Basak
 
Mobile forensic
Mobile forensicMobile forensic
Mobile forensic
DINESH KAMBLE
 
Computer +forensics
Computer +forensicsComputer +forensics
Computer +forensicsRahul Baghla
 
Digital forensics
Digital forensics Digital forensics
Digital forensics
vishnuv43
 
mobile forensic.pptx
mobile forensic.pptxmobile forensic.pptx
mobile forensic.pptx
Ambuj Kumar
 
Digital investigation
Digital investigationDigital investigation
Digital investigation
unnilala11
 
Current Forensic Tools
Current Forensic Tools Current Forensic Tools
Mobile Forensics
Mobile Forensics Mobile Forensics
Mobile Forensics
abdullah roomi
 
Cyber Forensics Module 2
Cyber Forensics Module 2Cyber Forensics Module 2
Cyber Forensics Module 2
Manu Mathew Cherian
 
Cybercrime And Cyber forensics
Cybercrime And  Cyber forensics Cybercrime And  Cyber forensics
Cybercrime And Cyber forensics
sunanditaAnand
 
Computer forensics
Computer forensicsComputer forensics
Computer forensics
Ramesh Ogania
 
Computer Forensics ppt
Computer Forensics pptComputer Forensics ppt
Digital Evidence in Computer Forensic Investigations
Digital Evidence in Computer Forensic InvestigationsDigital Evidence in Computer Forensic Investigations
Digital Evidence in Computer Forensic Investigations
Filip Maertens
 
Digital forensic principles and procedure
Digital forensic principles and procedureDigital forensic principles and procedure
Digital forensic principles and procedure
newbie2019
 

What's hot (20)

Digital Forensic: Brief Intro & Research Challenge
Digital Forensic: Brief Intro & Research ChallengeDigital Forensic: Brief Intro & Research Challenge
Digital Forensic: Brief Intro & Research Challenge
 
Computer forensics toolkit
Computer forensics toolkitComputer forensics toolkit
Computer forensics toolkit
 
Analysis of digital evidence
Analysis of digital evidenceAnalysis of digital evidence
Analysis of digital evidence
 
L6 Digital Forensic Investigation Tools.pptx
L6 Digital Forensic Investigation Tools.pptxL6 Digital Forensic Investigation Tools.pptx
L6 Digital Forensic Investigation Tools.pptx
 
computer forensics
computer forensicscomputer forensics
computer forensics
 
Cyber Forensics Overview
Cyber Forensics OverviewCyber Forensics Overview
Cyber Forensics Overview
 
Computer forensics and its role
Computer forensics and its roleComputer forensics and its role
Computer forensics and its role
 
Mobile forensic
Mobile forensicMobile forensic
Mobile forensic
 
Computer +forensics
Computer +forensicsComputer +forensics
Computer +forensics
 
Digital forensics
Digital forensics Digital forensics
Digital forensics
 
mobile forensic.pptx
mobile forensic.pptxmobile forensic.pptx
mobile forensic.pptx
 
Digital investigation
Digital investigationDigital investigation
Digital investigation
 
Current Forensic Tools
Current Forensic Tools Current Forensic Tools
Current Forensic Tools
 
Mobile Forensics
Mobile Forensics Mobile Forensics
Mobile Forensics
 
Cyber Forensics Module 2
Cyber Forensics Module 2Cyber Forensics Module 2
Cyber Forensics Module 2
 
Cybercrime And Cyber forensics
Cybercrime And  Cyber forensics Cybercrime And  Cyber forensics
Cybercrime And Cyber forensics
 
Computer forensics
Computer forensicsComputer forensics
Computer forensics
 
Computer Forensics ppt
Computer Forensics pptComputer Forensics ppt
Computer Forensics ppt
 
Digital Evidence in Computer Forensic Investigations
Digital Evidence in Computer Forensic InvestigationsDigital Evidence in Computer Forensic Investigations
Digital Evidence in Computer Forensic Investigations
 
Digital forensic principles and procedure
Digital forensic principles and procedureDigital forensic principles and procedure
Digital forensic principles and procedure
 

Similar to Computer forensics

computerforensics-140212060522-phpapp02.pdf
computerforensics-140212060522-phpapp02.pdfcomputerforensics-140212060522-phpapp02.pdf
computerforensics-140212060522-phpapp02.pdf
Gnanavi2
 
Cyber forensics ppt
Cyber forensics pptCyber forensics ppt
Cyber forensics ppt
RoshiniVijayakumar1
 
Business Intelligence (BI) Tools For Computer Forensic
Business Intelligence (BI) Tools For Computer ForensicBusiness Intelligence (BI) Tools For Computer Forensic
Business Intelligence (BI) Tools For Computer Forensic
Dhiren Gala
 
01 Computer Forensics Fundamentals - Notes
01 Computer Forensics Fundamentals - Notes01 Computer Forensics Fundamentals - Notes
01 Computer Forensics Fundamentals - NotesKranthi
 
Cyber forensics
Cyber forensicsCyber forensics
Cyber forensics
pranjal dutta
 
Computer forensics
Computer  forensicsComputer  forensics
Computer forensics
Lalit Garg
 
Computer forensic
Computer forensicComputer forensic
Computer forensic
Shashi Mishra
 
Computer forensics Slides
Computer forensics SlidesComputer forensics Slides
Computer forensics Slides
Varun Sehgal
 
Computer forensic
Computer forensicComputer forensic
Computer forensic
ibraheem ogundele
 
computer-forensics-8727-OHvDvOm.pptx
computer-forensics-8727-OHvDvOm.pptxcomputer-forensics-8727-OHvDvOm.pptx
computer-forensics-8727-OHvDvOm.pptx
ssuser2bf502
 
computer-forensics-8727-OHvDvOm.pptx
computer-forensics-8727-OHvDvOm.pptxcomputer-forensics-8727-OHvDvOm.pptx
computer-forensics-8727-OHvDvOm.pptx
DaniyaHuzaifa
 
computer forensics by amritanshu kaushik
computer forensics by amritanshu kaushikcomputer forensics by amritanshu kaushik
computer forensics by amritanshu kaushik
amritanshu4u
 
Latihan4 comp-forensic-bab3
Latihan4 comp-forensic-bab3Latihan4 comp-forensic-bab3
Latihan4 comp-forensic-bab3sabtolinux
 
Computer Forensics
Computer ForensicsComputer Forensics
Computer Forensics
One97 Communications Limited
 
Chap 1 general introduction to computer forensics
Chap 1  general introduction to computer forensicsChap 1  general introduction to computer forensics
Chap 1 general introduction to computer forensics
Malobe Lottin Cyrille Marcel
 
4.content (computer forensic)
4.content (computer forensic)4.content (computer forensic)
4.content (computer forensic)
JIEMS Akkalkuwa
 
Fundamental digital forensik
Fundamental digital forensikFundamental digital forensik
Fundamental digital forensik
newbie2019
 
R15 a0533 cf converted
R15 a0533 cf convertedR15 a0533 cf converted
R15 a0533 cf converted
lillian Kobusingye
 

Similar to Computer forensics (20)

computerforensics-140212060522-phpapp02.pdf
computerforensics-140212060522-phpapp02.pdfcomputerforensics-140212060522-phpapp02.pdf
computerforensics-140212060522-phpapp02.pdf
 
Cyber forensics ppt
Cyber forensics pptCyber forensics ppt
Cyber forensics ppt
 
Business Intelligence (BI) Tools For Computer Forensic
Business Intelligence (BI) Tools For Computer ForensicBusiness Intelligence (BI) Tools For Computer Forensic
Business Intelligence (BI) Tools For Computer Forensic
 
01 Computer Forensics Fundamentals - Notes
01 Computer Forensics Fundamentals - Notes01 Computer Forensics Fundamentals - Notes
01 Computer Forensics Fundamentals - Notes
 
Cyber forensics
Cyber forensicsCyber forensics
Cyber forensics
 
Computer forensics
Computer  forensicsComputer  forensics
Computer forensics
 
Computer forensic
Computer forensicComputer forensic
Computer forensic
 
Computer forensics Slides
Computer forensics SlidesComputer forensics Slides
Computer forensics Slides
 
File000166
File000166File000166
File000166
 
Computer forencis
Computer forencisComputer forencis
Computer forencis
 
Computer forensic
Computer forensicComputer forensic
Computer forensic
 
computer-forensics-8727-OHvDvOm.pptx
computer-forensics-8727-OHvDvOm.pptxcomputer-forensics-8727-OHvDvOm.pptx
computer-forensics-8727-OHvDvOm.pptx
 
computer-forensics-8727-OHvDvOm.pptx
computer-forensics-8727-OHvDvOm.pptxcomputer-forensics-8727-OHvDvOm.pptx
computer-forensics-8727-OHvDvOm.pptx
 
computer forensics by amritanshu kaushik
computer forensics by amritanshu kaushikcomputer forensics by amritanshu kaushik
computer forensics by amritanshu kaushik
 
Latihan4 comp-forensic-bab3
Latihan4 comp-forensic-bab3Latihan4 comp-forensic-bab3
Latihan4 comp-forensic-bab3
 
Computer Forensics
Computer ForensicsComputer Forensics
Computer Forensics
 
Chap 1 general introduction to computer forensics
Chap 1  general introduction to computer forensicsChap 1  general introduction to computer forensics
Chap 1 general introduction to computer forensics
 
4.content (computer forensic)
4.content (computer forensic)4.content (computer forensic)
4.content (computer forensic)
 
Fundamental digital forensik
Fundamental digital forensikFundamental digital forensik
Fundamental digital forensik
 
R15 a0533 cf converted
R15 a0533 cf convertedR15 a0533 cf converted
R15 a0533 cf converted
 

Recently uploaded

Knowledge engineering: from people to machines and back
Knowledge engineering: from people to machines and backKnowledge engineering: from people to machines and back
Knowledge engineering: from people to machines and back
Elena Simperl
 
ODC, Data Fabric and Architecture User Group
ODC, Data Fabric and Architecture User GroupODC, Data Fabric and Architecture User Group
ODC, Data Fabric and Architecture User Group
CatarinaPereira64715
 
To Graph or Not to Graph Knowledge Graph Architectures and LLMs
To Graph or Not to Graph Knowledge Graph Architectures and LLMsTo Graph or Not to Graph Knowledge Graph Architectures and LLMs
To Graph or Not to Graph Knowledge Graph Architectures and LLMs
Paul Groth
 
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 previewState of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
Prayukth K V
 
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
BookNet Canada
 
Accelerate your Kubernetes clusters with Varnish Caching
Accelerate your Kubernetes clusters with Varnish CachingAccelerate your Kubernetes clusters with Varnish Caching
Accelerate your Kubernetes clusters with Varnish Caching
Thijs Feryn
 
Search and Society: Reimagining Information Access for Radical Futures
Search and Society: Reimagining Information Access for Radical FuturesSearch and Society: Reimagining Information Access for Radical Futures
Search and Society: Reimagining Information Access for Radical Futures
Bhaskar Mitra
 
"Impact of front-end architecture on development cost", Viktor Turskyi
"Impact of front-end architecture on development cost", Viktor Turskyi"Impact of front-end architecture on development cost", Viktor Turskyi
"Impact of front-end architecture on development cost", Viktor Turskyi
Fwdays
 
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
DanBrown980551
 
Bits & Pixels using AI for Good.........
Bits & Pixels using AI for Good.........Bits & Pixels using AI for Good.........
Bits & Pixels using AI for Good.........
Alison B. Lowndes
 
Epistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI supportEpistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI support
Alan Dix
 
Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...
Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...
Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...
UiPathCommunity
 
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
Product School
 
FIDO Alliance Osaka Seminar: Passkeys at Amazon.pdf
FIDO Alliance Osaka Seminar: Passkeys at Amazon.pdfFIDO Alliance Osaka Seminar: Passkeys at Amazon.pdf
FIDO Alliance Osaka Seminar: Passkeys at Amazon.pdf
FIDO Alliance
 
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdf
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdfSmart TV Buyer Insights Survey 2024 by 91mobiles.pdf
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdf
91mobiles
 
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
Product School
 
PHP Frameworks: I want to break free (IPC Berlin 2024)
PHP Frameworks: I want to break free (IPC Berlin 2024)PHP Frameworks: I want to break free (IPC Berlin 2024)
PHP Frameworks: I want to break free (IPC Berlin 2024)
Ralf Eggert
 
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Tobias Schneck
 
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Product School
 
Neuro-symbolic is not enough, we need neuro-*semantic*
Neuro-symbolic is not enough, we need neuro-*semantic*Neuro-symbolic is not enough, we need neuro-*semantic*
Neuro-symbolic is not enough, we need neuro-*semantic*
Frank van Harmelen
 

Recently uploaded (20)

Knowledge engineering: from people to machines and back
Knowledge engineering: from people to machines and backKnowledge engineering: from people to machines and back
Knowledge engineering: from people to machines and back
 
ODC, Data Fabric and Architecture User Group
ODC, Data Fabric and Architecture User GroupODC, Data Fabric and Architecture User Group
ODC, Data Fabric and Architecture User Group
 
To Graph or Not to Graph Knowledge Graph Architectures and LLMs
To Graph or Not to Graph Knowledge Graph Architectures and LLMsTo Graph or Not to Graph Knowledge Graph Architectures and LLMs
To Graph or Not to Graph Knowledge Graph Architectures and LLMs
 
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 previewState of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
 
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
 
Accelerate your Kubernetes clusters with Varnish Caching
Accelerate your Kubernetes clusters with Varnish CachingAccelerate your Kubernetes clusters with Varnish Caching
Accelerate your Kubernetes clusters with Varnish Caching
 
Search and Society: Reimagining Information Access for Radical Futures
Search and Society: Reimagining Information Access for Radical FuturesSearch and Society: Reimagining Information Access for Radical Futures
Search and Society: Reimagining Information Access for Radical Futures
 
"Impact of front-end architecture on development cost", Viktor Turskyi
"Impact of front-end architecture on development cost", Viktor Turskyi"Impact of front-end architecture on development cost", Viktor Turskyi
"Impact of front-end architecture on development cost", Viktor Turskyi
 
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
 
Bits & Pixels using AI for Good.........
Bits & Pixels using AI for Good.........Bits & Pixels using AI for Good.........
Bits & Pixels using AI for Good.........
 
Epistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI supportEpistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI support
 
Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...
Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...
Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...
 
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
 
FIDO Alliance Osaka Seminar: Passkeys at Amazon.pdf
FIDO Alliance Osaka Seminar: Passkeys at Amazon.pdfFIDO Alliance Osaka Seminar: Passkeys at Amazon.pdf
FIDO Alliance Osaka Seminar: Passkeys at Amazon.pdf
 
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdf
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdfSmart TV Buyer Insights Survey 2024 by 91mobiles.pdf
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdf
 
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
 
PHP Frameworks: I want to break free (IPC Berlin 2024)
PHP Frameworks: I want to break free (IPC Berlin 2024)PHP Frameworks: I want to break free (IPC Berlin 2024)
PHP Frameworks: I want to break free (IPC Berlin 2024)
 
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
 
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
 
Neuro-symbolic is not enough, we need neuro-*semantic*
Neuro-symbolic is not enough, we need neuro-*semantic*Neuro-symbolic is not enough, we need neuro-*semantic*
Neuro-symbolic is not enough, we need neuro-*semantic*
 

Computer forensics

  • 1. Group Members are as:- 1.Royson Pinto COMPUTER FORENSICS
  • 2. CONTENTS Definition of Computer Forensics History of Computer Forensics Steps Of Computer Forensics Certifications for Computer Forensic Computer Forensic Requirements Collecting Evidence Uses of Computer forensics Advantages of Computer Forensics Disadvantages of Computer Forensics Computer forensics labs and centers in India Conclusion References
  • 3. THE FIELD OF COMPUTER FORENSICS What is Computer Forensics?  Computer forensics involves the preservation, identification, extraction, documentation, and interpretation of computer media for evidentiary and root cause analysis  Computer forensics is the process of identifying, preserving, and analyzing data and technical items for evidence that will be used in court
  • 4. THE FIELD OF COMPUTER FORENSICS Used to obtain potential legal evidence Evidence might be required for a wide range of computer crimes and misuses Multiple methods of computer forensics are:  Discovering data on computer system  Recovering deleted, encrypted, or damaged file information  Monitoring live activity  Detecting violations of corporate policy Information collected assists in arrests, prosecution, termination of employment, and preventing future illegal activity
  • 5. THE FIELD OF COMPUTER FORENSICS Example:- Recovering thousands of deleted emails Performing investigation post employment termination Recovering evidence post formatting hard drive
  • 6. HISTORY OF COMPUTER FORENSICS 1970s  First crimes cases involving computers, mainly financial fraud 1980’s  Financial investigators and courts realize that in some cases all the records and evidences were only on computers.  Norton Utilities, “Un-erase” tool created  Association of Certified Fraud Examiners began to seek training in what became computer forensics  SEARCH High Tech Crimes training created  Regular classes began to be taught to Federal agents in California and at FLETC in Georgia  HTCIA formed in Southern California
  • 7. HISTORY OF COMPUTER FORENSICS 1984  FBI Magnetic Media Program created... this later becomes the Computer Analysis and Response Team (CART) 1993  First International Conference on Computer Evidence held 1995  International Organization on Computer Evidence (IOCE) formed
  • 8. HISTORY OF COMPUTER FORENSICS 1997  The G8 countries declared that "Law enforcement personnel must be trained and equipped to address high-tech crimes" in the Moscow 1998  In March G8 appointed IICE to create international principles for the procedures relating to digital evidence 1998  INTERPOL Forensic Science Symposium
  • 9. HISTORY OF COMPUTER FORENSICS 1999  FBI CART case load exceeds 2000 cases,  examining 17 terabytes of data 2000  First FBI Regional Computer Forensic Laboratory established 2003  FBI CART case load exceeds 6500 cases,  examining 782 terabytes of data
  • 10. STEPS OF COMPUTER FORENSICS  According to many professionals, Computer Forensics is a four (4) step process Acquisition  Physically or remotely obtaining possession of the computer, all network mappings from the system, and external physical storage devices Identification  This step involves identifying what data could be recovered and electronically retrieving it by running various Computer Forensic tools and software suites
  • 11. STEPS OF COMPUTER FORENSICS Evaluation  Evaluating the information/data recovered to determine if and how it could be used again the suspect for employment termination or prosecution in court Presentation  This step involves the presentation of evidence discovered in a manner which is understood by lawyers, non-technically staff/management, and suitable as evidence as determined by United States and internal laws
  • 12. CERTIFICATION FOR COMPUTER INVESTIGATIVE SPECIALISTS CEECS (Certified Electronic Evidence Collection Specialist Certification) Awarded to individuals who complete the CEECS regional certification course Also awarded to individuals in the Certified Forensic Computer Examiner course that successfully pass the written test
  • 13. CERTIFICATION FOR FORENSIC COMPUTER EXAMINER Internal Certification Training Program  Must successfully complete two week training course offered by IACIS and correspondence proficiency problems External Certification Testing Process  Not a training course  Testing process Active Law Enforcement Individuals qualified for IACIS membership Recertification  Every three years must complete recertification process Must be in good standing with IACIS Complete proficiency test
  • 14. A COMPUTER FORENSIC SPECIALIST PROMISES TO:  Do not delete, damage or alter any evidence  Protect the computer and files against a virus  Handle all evidence properly to prevent any future damage  Keep a log of all work done and by whom  Keep any Client-Attorney information that is gained confidential
  • 15. COMPUTER FORENSIC REQUIREMENTS  Hardware  Familiarity with all internal and external devices/components of a computer  Thorough understanding of hard drives and settings  Understanding motherboards and the various chipsets used  Power connections  Memory  BIOS  Understanding how the BIOS works  Familiarity with the various settings and limitations of the BIOS
  • 16. COMPUTER FORENSIC REQUIREMENTS  Operation Systems  Windows 3.1/95/98/ME/NT/2000/2003/XP  DOS  UNIX  LINUX  Software  Familiarity with most popular software packages such as MS Office  Forensic Tools  Familiarity with computer forensic techniques and the software packages that could be used
  • 17.  Make Exact copies of all hard drives & disks using computer software  Date and Time stamped on each file; used for timeline  Protect the Computer system  Avoid deletion, damage, viruses and corruption  Discover files  Normal Files  Deleted Files  Password Protected Files  Hidden Files  Encrypted Files  Reveal all contents of hidden files used by application and operating system  Access contents of password protected files if legally able to do so  Analyze data  Print out analysis  Computer System  All Files and data  Overall opinion  Provide expert consultation/testimony COLLECTING EVIDENCE
  • 18. USES OF COMPUTER FORENSICS  Criminal Prosecutors  Rely on evidence obtained from a computer to prosecute suspects and use as evidence  Civil Litigations  Personal and business data discovered on a computer can be used in fraud, divorce, harassment, or discrimination cases  Insurance Companies  Evidence discovered on computer can be used to mollify costs (fraud, worker’s compensation, arson, etc)
  • 19. USES OF COMPUTER FORENSICS  Private Corporations  Obtained evidence from employee computers can be used as evidence in harassment, fraud, and embezzlement cases  Law Enforcement Officials  Rely on computer forensics to backup search warrants and post-seizure handling  Individual/Private Citizens  Obtain the services of professional computer forensic specialists to support claims of harassment, abuse, or wrongful termination from employment
  • 20. ADVANTAGES OF COMPUTER FORENSICS Ability to search through a massive amount of data Quickly Thoroughly In any language
  • 21. DISADVANTAGES OF COMPUTER FORENSICS  Digital evidence accepted into court  must prove that there is no tampering  all evidence must be fully accounted for  computer forensic specialists must have complete knowledge of legal requirements, evidence handling and storage and documentation procedures
  • 22. DISADVANTAGES OF COMPUTER FORENSICS  Costs  producing electronic records & preserving them is extremely costly ,  Presents the potential for exposing privileged documents  Legal practitioners must have extensive computer knowledge
  • 23. COMPUTER FORENSICS LABS AND CENTERS IN INDIA 1. cyber college, Dehradun 2. Secure India (A Group of Cyber Security Specialists), Muzaffarnagar, Uttar Pradesh 3. E2Labs Research & Development Center, Hyderabad, Andhra Pradesh 4. Agape Inc, Nagpur, Maharashtra 5. Appin Technology Lab, Hyderabad, Andhra Pradesh 6. Shoeb Online, Mumbai, Maharashtra 7. ForensicsGuru.com, New Delhi 8. I.TECH COMPUTERS - DATA FORENSICS & DATA RECOVERY, Mumbai 9. Indiaforensic Center of Studies , Pune 10. Focus Forensics Technology Private Limited,Delhi
  • 24. CONCLUSION With computers becoming more and more involved in our everyday lives, both professionally and socially, there is a need for computer forensics. This field will enable crucial electronic evidence to be found, whether it was lost, deleted, damaged, or hidden, and used to prosecute individuals that believe they have successfully beaten the system.
  • 25. REFERENCES http://www.allstateinvestigation.com/ComputerForen sicServices.htm Computer Forensics, Inc. http://www.forensics.com/  http://www.computer-forensic.com/index.html http://www.forensics- research.com/index.php/computer-forensics/tools/