1. IntroductionThe purpose of this report is to theoretically cover data preservation, digital evidence examination, tools and techniques for data acquisition, preservation and examination with a list of recommendations. In our modern society, computers and other digital devices are becoming ubiquitous. In the late 1970s the number of crimes involving digital devices and computers increased rapidly. As a result, cyber experts have specified the need to permanently improve digital forensic tools and practices. Digital forensics is described as “a forensic science involving the recovery and investigation of materials found in digital devices” (“Introduction to Digital Forensics,” 2011). ). The goal of digital forensics is to implement a well-structured investigation while preserving a documented chain of custody and evidence custody form to know what actually happened on the digital devices and who was responsible for it. Digital forensics is important for the following reasons:• In most crimes committed today, criminals leave behind digital evidence that can be recovered by digital forensic experts and digital forensic tools. • Digital evidence is increasingly scrutinized by the legal profession. • Criminals today have higher levels of computer skills to prevent computer forensic experts from recovering evidence. Currently, since the importance of digital forensic analysis has its own field of expertise, computer forensic training and certification. Organizations and courts now know the significant need for a cost-effective digital forensic process when a digital crime occurs. In early 21st, we will improve guidelines and practices useful for formalizing a computer forensic analysis. Generall...... middle of paper ......captures important data on computerized evidence in any cybercrime investigation, without the need for special forensic skills. The tool is activated after being installed on a USB flash drive and then connected to a USB port. The features included in the tool are password decryption, data extraction and internet history recovery. The most outstanding feature offered by COFFEE is the recovery of data stored in volatile memory that may be lost if the computer is turned off.2) P2 Commander 3.0 by Paraben is a complete forensic toolkit created by Paraben Company. It is a court-tested tool, offering convenient and reliable digital analytics for digital investigations. The tool is designed to handle large volumes of data efficiently and quickly. It is a highly recommended computer forensic tool for advanced analysis of email and chat logs.
tags