Mobile Device Forensics

  • Webcast Aired Tuesday, 20 May 2014 12:00AM EDT (20 May 2014 04:00 UTC)
  • Speaker: Paul Henry

Join us for the next installment of the SANS-APAC webcast series wherewe will provide a technical look at Mobile Device Forensics.

If you 're only doing a logical analysis then you have to consider thatyou are in all probability really only getting part of the evidence thatmay in fact exist. Simply put, a thorough analysis requires a physicalextraction and its more complete examination.

As an example, in a physical acquisition and analysis of an iPhone theadditional evidence recovered included:

22,000+ images
59 videos
1000+ audio files
16,000+ locations
60+ chats (included Facebook and Skype)
30+ MMS
3300+ text files

Performing anything less than a physical acquisition and analysis issimply not a thorough forensic examination!