Search Result

How to Master Triage For Your Forensic Investigations

When the term “triage” is mentioned, it can evoke different thoughts for different people. Most commonly, it refers to a quick method of determining a threshold number of images, videos, or specific keywords to make a straightforward yes/no decision. However, triage has evolved into something much

Read More

Digital Evidence Backlog: Forensic Triage and Early Case Assessment

The amount of digital information available today is overwhelming. This becomes even more obvious in the area of criminal investigations. The digital evidence that is brought in for law enforcement to examine in regards to a case is often too much and investigators don’t know where

Read More

Building Efficiency into Digital Forensic Programs

Technology has become more powerful and portable, allowing a more significant amount of information to be created, stored, and accessed. This shift in the information technology landscape (mobile, cloud, IoT, etc.) has made the collection and analysis of digital evidence a critical factor in investigating and

Read More

Using Forensic Triage for Early Case Assessment

When you’re faced with a mountain of digital evidence, how do you start sifting through it? For law enforcement, litigation support, and incident response agencies organizing and prioritizing digital media and electronically stored information (ESI) is crucial. Adopting an Early Case Assessment (ECA) methodology helps expedite

Read More

Using a Forensic Triage Tool for Rapid Digital Investigations

One of the reasons that investigators choose ADF software as their primary triage tool is because it can be used standalone or in conjunction with traditional forensic software.  Forensic Triage is ideal for front-line investigators because it’s fast, easy-to-use, and can net results in situations where

Read More

Don’t Forget RAM Capture: A Key to Digital Forensics

Digital forensic experts understand the importance of remembering to perform a RAM Capture on-scene so as to not leave valuable evidence behind. Capturing volatile data in a computer’s memory dump enables investigators and examiners to do a full memory analysis and access data including:

Read More