This document outlines the agenda for a mobile device forensics session. It discusses what mobile device forensics is, the history of the field, types of evidence that can be recovered from mobile devices including internal memory, external memory and service provider logs. It also describes the forensic process of seizing devices, acquiring data, and examining and analyzing the evidence. Methods like rooting and jailbreaking are mentioned, along with controversies in the field. The document concludes with an announcement of a demonstration of acquiring data from a mobile phone using forensic software.