Tag: Digital Forensics

Digital Forensics: An Introduction

Digital Forensics is the application of scientific methods in preserving, recovering, and investigating digital evidence in a Digital crime scenario.  Experts can correctly define it as the collection, examination, analysis, and documentation using scientifically proven methods to investigate a digital crime and present it before the court. Table of Contents Elements of a Digital Crime […]

USB Forensics: Detection & Investigation

Digital Forensics Investigators commonly find Universal Serial Bus flash drives, known as USB flash drives, as the most common storage devices used as evidence. Investigators must follow a defined procedure for the investigation and conduct it in such a manner that they do not destroy the evidence. So, let us get started with the Forensics […]

Forensic Investigation: Autopsy Forensic Browser in Linux

Autopsy® is a digital forensics platform and graphical interface to The Sleuth Kit® and other digital forensics tools. It is an open-source tool for digital forensics which was developed by Basis Technology. Autopsy Forensic Browser is a built-in application in Kali Linux operating system, so let’s power on the Kali in a Virtual Machine. This tool […]

Forensic Investigation: Windows Registry Analysis

In this article, we will learn how we can use RegRipper to analyze the windows registry in the forensic investigation environment. Table of Content Introduction to RegRipper Creating a Registry Hives SAM Hive Analyzing Log: SAM Analyzing Report: SAM System Hive Analyzing Log: System Analyzing Report: System Software Hive Analyzing Log: Software Analyzing Report: Software […]

Forensic Investigation: Examining Corrupted File Extension

In this article, we will learn how we can Examine Corrupted File Extension to identify the basic file header in a Forensic Investigation. Let’s understand this with the following Scenario In this Scenario, a forensic investigator has gone for an investigation and found out a suspicious folder where no file has any kind of file […]