Essay Instructions: Request writer moriks58
The assignment must follow these formatting requirements:
? Be typed, double spaced, using Times New Roman font (size 12), with one-inch margins on all sides; citations and references must follow APA. Use at least four (4) quality resources in this assignment. Note: Wikipedia and similar Websites do not qualify as quality resources.
Write a 3-4 page paper in which you: (see my notes, add or change info and make it a paper, don?t write the questions)
Please use the sources listed :
Assignment: Computer Forensic Tools
You have been recently hired to assist with purchasing computer forensics tools and resources for a major corporation. Using the concepts that you learned in chapters nine (9) through twelve (12) recommend specific tools that can be used for computer forensics investigation.
Write a 3-4 page paper in which you:
1. Compare and contrast features and costs of at least two (2) programs that can be used to recover deleted files. Include the success rates and specific functions each program offers.
My notes: Needs more info about these programs
- UndeletePlus ($29.95)
- DiskDigger (Free)
- EnCase Forensics ($2,995.00)
The techniques to recover files should be the same. The main difference will be the filesystems supported (e.g. FAT12/16/32, NTFS and NTFS5). (Please add more to this)
2. Specify the costs associated with purchasing two (2) tools that can be used to gather digital evidence from a cell phone. Include specific hardware or additional devices that will be required.
My notes:
- Paraben Software Device Seizure
Price: $1,795 the first year for software and cables. $360 maintenance after the 1st year.
Computer hardware not included since it is software based.
Some of the features include: logical and physical acquisitions, file system acquisitions, password bypassing, advanced data parsers, data carving, file viewers, Google Earth integration, a back end database for handling the large amounts of data contained in smart phones, etc.
Ref: http://www.paraben.com/downloads/ds-comparison-chart.pdf, http://www.paraben.com/downloads/ds6-brochure.pdf
- Cellebrite UFED Ultimate ($10,000 according to SC Magazine)
Come with software, cables, adapters and proprietary hardware.
Some of the features include:
Physical, logical, file system extraction and decoding while bypassing pattern lock/ password / PIN from Android devices including HTC, Motorola, Samsung Galaxy SIII family and more
Obtain existing and deleted data: apps, passwords, emails, call history, SMS, contacts, calendar, media ?les, geotags, location information, GPS ?xes etc
Malware Detection, Timeline, Image Carving, SQLite Databases Viewer, Python Scripting
Ref: http://www.cellebrite.com/images/stories/brochures/UFED-Touch-Ultimate-ENGLISH-web.pdf
3. Identify hourly costs associated with specific certified computer experts that can be used for forensics purposes and suggest a certified computer professional, you think, would be effective for a court case.
My notes:
- Hourly cost for Computer Forensics professionals range from $150-$500 per hour (book)
- Computer Forensics Certifications that will be effective in court
o CyberSecurity Forensic Analyst certification
Requires two (2) years of experience and an FBI background investigation before the testing candidate can take the certifications test.
Ref: http://www.cybersecurityforensicanalyst.com/testCSFA.htm
o The International Society of Forensic Computer Examiners ? Certified Computer Examiner (CCE)
Requires 18 months of practical experience
The candidate cannot have a criminal record
Ref: https://www.isfce.com/ccelist.htm, https://www.isfce.com/certification.htm
o GIAC Certified Computer Forensics Analyst (GCFA)
Ref: http://computer-forensics.sans.org/certification/gcfe
List of Certified Analysts: http://computer-forensics.sans.org/certification/analysts/gcfe
4. Summarize a current event article based on how an expert?s deposition helped the case at trial. Include specifics on how the deposition was delivered and what was done to ensure that it was provided truthfully and concisely.