MOBILE DEVICE FORENSIC SOP & GUIDELINE – 1

Mobile device forensics is a branch of digital forensics relating to recovery of digital evidence or data from a mobile device under forensically sound conditions.

There is growing need for mobile forensics due to several reasons and some of the prominent reasons are:

  • Use of mobile phones to store and transmit personal and corporate information
  • Use of mobile phones in online transactions
  • Law enforcement, criminals and mobile phone devices

 

Forensics Imaging in brief

8311OS_01_03.png

NIST: www.nist.gov/node/563446

www.csrc.nist.gov/publications/nistpubs/800-101/SP800-101.pdf

Digital Evidence: www.7safe.com/research-and-insight/acpo-guidelines

SANS: www.digital-forensics.sans.org/media/mobile-device-forensic-process-v3.pdf

Important

Tools: There are so many tools and applications for mobile smartphone forensics, but initially concept and architecture is very important to initiate.

  • UFED Cellebrite
  • MPE+
  • Oxygen
  • Andriller
  • Mobiledit
  • Autopsy

So on..

www.mecs-press.org/ijitcs/ijitcs-v8-n1/IJITCS-V8-N1-9.pdf

www.cftt.nist.gov/mobile_devices.htm

Read More: www.en.wikipedia.org/wiki/Mobile_device_forensics

Demo :

Bypass security: passcode, password or pattern unlock on any Samsung Galaxy Phone – Without rooting.Sometimes need to do semi/temp root to get full privilege .

This slideshow requires JavaScript.

For complete Video : https://www.youtube.com/watch?v=KHQQtUcN5nU

To be Cont…. (Rooting, Jailbreak, JTAG, Physical recovery, Whatsapp IM)

Cyber Forensic Group : Click here

PS: Education purposes ≠ endorsement

Advertisements

One thought on “MOBILE DEVICE FORENSIC SOP & GUIDELINE – 1

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s