Digital forensics and mobile devices

On Thursday 9th May we looked at Digital forensics, particularly as it applies to mobile devices. Here are some of the links which led our discussion:

A GUIDE TO DIGITAL FORENSICS AND CYBERSECURITY TOOLS (2024) : Digital devices are ubiquitous, and their use in chain-of-evidence investigations is crucial. Today’s smoking gun is more likely to be a laptop or a phone than a more literal weapon. Whether such a device belongs to a suspect or victim, the vast swathes of data these systems contain could be all an investigator needs to put together a case.

That said, retrieving that data securely, efficiently, and lawfully is not always a simple endeavor. As a result, investigators rely on new digital forensics tools to assist them.

What is Open-Source Intelligence? : Open-Source Intelligence (OSINT) is defined as intelligence produced by collecting, evaluating and analyzing publicly available information with the purpose of answering a specific intelligence question.

Autopsy Digital forensics : “Autopsy® is the premier end-to-end open source digital forensics platform. Built by Basis Technology with the core features you expect in commercial forensic tools, Autopsy is a fast, thorough, and efficient hard drive investigation solution that evolves with your needs.”

MSAB : MSAB is the global leader in digital forensic technology for mobile device examination and analysis. The company has, since its founding in 1984, set the global standard for the digital forensics industry. The MSAB vision is to empower every investigation with digital forensic solutions – for a safer world. A core value is to run an ethics-driven company with innovation and results. This “how” sets the company apart from competition, but it is the “why” – to contribute to a safer world – that truly makes us unique.

The company is headquartered in Stockholm, Sweden. As a truly global company MSAB also has main offices in the USA, UK, Canada, Europe, Asia, and Australia, as well as a network of distributors around the world.

A UK Police Force was faced with a massive backslide in solving cases. The volume of data and digital evidence which required filtering and analyzing were enormous. A senior manager talks about the vast amount of time saved by being able to sort digital evidence quickly. Let us share with you how XAMN helped the team to be more efficient and evolve a more sustainable way of working resulting in the number of arrests directly linked to reviewing digital media extractions going from 3 to 19 in the first 12 months.
Modern smartphones are so complex, no wonder people are confused about their capabilities. This video focuses on smartphone location tracking and tries to clear up facts and myths. Edward Snowden explains why it is impossible to not be tracked using a mobile phone, Lilith Wittmann uses Apple’s AirTags to find a secret agency and Malte Spitz reveals how powerful cell tower tracking can be. Modern iPhones and Androids have multiple location services built in. That’s why we have a look not only at GPS but also at Wi-Fi and Bluetooth.
How do police extract data from seized smartphones when everything seems to be encrypted? Digital forensics companies like Cellebrite or Grayshift provide special unlocking devices which are able to get around many of iOS’ and Android’s security measures. (By the way, having a fingerprint login won’t prevent them from getting onto your phone, since you have to use a password, PIN or swipe to set up the fingerprint login in the first place!)
Vehicle digital forensics is changing the way murders are being solved. Ronda French says her dad’s murder went unsolved for years until a detective learned about vehicle forensics. Detectives say the key to solving the crime was the computer system built into Ronald French’s truck. Investigators say they found a time-stamped recording of the killer’s voice, placing him at the crime scene. Joshua Wessel later pleaded guilty to the murder of Ronda’s father. Inside Edition’s Lisa Guerrero has more.

Chris Betterton-Jones – Knowledge junkie