Ask Software Engineering Expert

Creating a Forensic System Case File for Analyzing Forensic Evidence

Introduction

The goal of forensic analysis is to discover the who, what, when, where, why, and how of forensic evidence, while ensuring the digital evidence is preserved, defensible, and presentable in a court of law. But when forensic investigators explore a machine in search of evidence, they risk changing the very data they seek, potentially invalidating evidence. If evidence is to be presented in a court of law, it is important to follow chain-of-custody procedures. This ensures there is no evidence tampering, and that the original data source remains intact from the time it is collected until it is presented in court. This process includes the chronological documentation and collection of paper and digital information from when it was discovered, analyzed, and addressed or interpreted.

As part of the chain-of-custody documentation, it is a common practice to make a copy of the targeted image prior to performing the actual digital forensic investigation. This allows for a proper external digital forensic investigation that can be self-contained in a virtual machine (VM) environment. This ensures that no data is written to the drive and preserves the original forensic data.

In the case of digital forensic analysis, write-blocking technologies will ensure chain-of-custody procedures are maintained. Forensic investigating tools can analyze documents, e-mail messages, chat sessions, Registry and system files, installed programs, and the Internet browser history. In this lab, you will use a leading forensic application to investigate an image of a hard drive and find forensic evidence without affecting the integrity of the data on the image. You will create an electronic case file that contains the evidence file provided to you, and you will save the case file for later review. In this way, you will experience all the steps needed in a forensic investigation to preserve the source and ensure that the evidence is defensible and presentable in a court of law.

This lab has two parts, which you should complete in order:

In the first part of the lab, you will explore the P2 Commander tool in the virtual lab environment.

If assigned by your instructor, you will explore the virtual environment on your own to answer a set of challenge questions that allow you to use the skills you learned in the lab to conduct independent, unguided work, similar to what you will encounter in a real-world situation.

Learning Objectives

Upon completing this lab, you will be able to:

Create a new digital forensic case file using a forensic application.

Document a new digital forensic case with digital evidence submitted to the newly created case file.

Add forensic system image evidence to the case file.

Explain how to properly document and create a digital forensic case file as per the chain of custody.

Tools and Software

The following software and/or utilities are required to complete this lab. Students are encouraged to explore the Internet to learn more about the products and tools used in this lab.
P2 Commander

Deliverables

Upon completion of this lab, you are required to provide the following deliverables to your instructor:

Lab Report file, including screen captures of the following step: Part 1, Step 19;

Lab Assessment worksheet;

Optional: Challenge Questions file, if assigned by your instructor.

Software Engineering, Computer Science

  • Category:- Software Engineering
  • Reference No.:- M92253493
  • Price:- $40

Priced at Now at $40, Verified Solution

Have any Question?


Related Questions in Software Engineering

In this assignment you will answer the following questions

In this assignment, you will answer the following questions related to Android platform and Android security design. 1. Describe Android architecture in detail by explaining the four conceptual layers. 2. Describe Androi ...

The research paper for this course is about some of the

The research paper for this course is about some of the best sources of digital evidence for child abuse and exploitation, domestic violence, and gambling according to the National Institute of Justice. Research commerci ...

Research projectin the course we have covered various

RESEARCH PROJECT In the course, we have covered various security and privacy issues that arise in the cyberspace field. We have learned to identify these risks and have discussed the current approaches and developments f ...

Overviewyou are required to modify and logically extend

Overview You are required to modify and logically extend the functionality of a provided code base to implement a game. This requires you to modify the code base as well as create documentation and implement various user ...

Address the following integrating biblical perspectives

Address the following, integrating biblical perspectives where appropriate: Define a hate crime and describe how white supremacist groups use the Internet to spread their message of hate. Explain why hate crime legislati ...

In this assignment you will answer the following review

In this assignment, you will answer the following review questions from the reading materials of the module/week. 1. "What are the key components of a typical P2P application? Describe their functions." 2. "What are the ...

Write reply to this article with references with apa

Write reply to this article with references with APA bibliography. Hate Crimes Over the past couple of years, hate crimes have been on the rise in America's largest cities. Studies show that there were sharp spikes in th ...

Reply to this article with apa referencehate crimes

Reply to this article with APA reference. Hate crimes According to Merriam-Webster, hate crime is any of various crimes (such as assault or defacement of property) when motivated by hostility to the victim as a member of ...

Proposaldesign of an efficient gps tracking system tag for

Proposal Design of an efficient GPS Tracking System (tag) for monitoring small species IMPLEMENTING EMBEDDED SYSTEMS USING SYSML Task Using PapyrusSysML Software (Downloadable online - Evaluation Copy- Latest Version) Mo ...

Write review on this article with apa formatgovernment

Write review on this article with APA format. Government surveillance is a major issue in the United States and globally. Surveillance refers to any collection and processing of personal data, whether, identifiable or no ...

  • 4,153,160 Questions Asked
  • 13,132 Experts
  • 2,558,936 Questions Answered

Ask Experts for help!!

Looking for Assignment Help?

Start excelling in your Courses, Get help with Assignment

Write us your full requirement for evaluation and you will receive response within 20 minutes turnaround time.

Ask Now Help with Problems, Get a Best Answer

Why might a bank avoid the use of interest rate swaps even

Why might a bank avoid the use of interest rate swaps, even when the institution is exposed to significant interest rate

Describe the difference between zero coupon bonds and

Describe the difference between zero coupon bonds and coupon bonds. Under what conditions will a coupon bond sell at a p

Compute the present value of an annuity of 880 per year

Compute the present value of an annuity of $ 880 per year for 16 years, given a discount rate of 6 percent per annum. As

Compute the present value of an 1150 payment made in ten

Compute the present value of an $1,150 payment made in ten years when the discount rate is 12 percent. (Do not round int

Compute the present value of an annuity of 699 per year

Compute the present value of an annuity of $ 699 per year for 19 years, given a discount rate of 6 percent per annum. As