Computer Forensic Imaging Tools

Blog entry by Ira P. Rothken on Moredata, May 13, 2007:

During the course of an electronic investigation you may be called upon to plan the forensic analysis of a target’s computer system and hard drive.The target hard drive may contain a range of data relevant to an investigation from emails making overt admissions to trace evidence of files that were “attempted” to be deleted that when “undeleted” may prove to be incriminating.

The general flow chart for a computer forensic investigation can be summarized with an acronym ISUPR and is as follows….


Print This Post Print This Post Share This

Leave a Reply

You must be logged in to post a comment.