Digital Forensics: Uncovering the Truth
in the Digital World
A Look into Cyber Investigations & Modern Forensic Techniques
NAME :Adeshna Laxman
REGISTRATION NUMBER :
12318342
ROLL NUMBER : 13
What is Digital Forensics?
Digital Forensics is the branch of forensic science that deals
with identifying, preserving, analyzing, and presenting digital
evidence from electronic devices.
To investigate cybercrimes, retrieve lost data, and support
legal cases using digital evidence.
The various types of Devices Involved are Computers, mobile
phones, tablets, USB drives, cloud storage, IoT devices.
Example:
Recovering deleted WhatsApp chats from a suspect’s phone in
a cyberbullying case
Major types of digital forensics
• Computer Mobile Network Cloud
Forensics Device Forensics Forensics
• Investigates data Forensics
• Monitors Deals with data
from
network traffic stored in the cloud
laptops/desktops. • Extracts call logs,
and packet data. (Google Drive,
messages, app
• E.g., Finding fake iCloud).
data. • E.g., Detecting
documents in fraud
hacking E.g., Retrieving
cases. • E.g., Tracking GPS
attempts or data tampered files
data in missing breaches. from cloud logs.
person cases
The Digital Forensic Process
• Identification
Detecting potential digital evidence (e.g., a suspect’s phone or
laptop).
• Preservation
Securing data to avoid tampering (using write blockers, bit-by-bit
copies).
• Analysis
Deep examination using forensic tools like Autopsy, EnCase, FTK.
• Documentation & Presentation
Writing
🔐 Chain reports
of custody is & presenting
crucial findings
throughout in court. evidence integrity.
to maintain
Recent Advancements in Digital
Forensics
• AI and Machine Learning
Speeds up analysis of large data sets (e.g., image or text
recognition).
• Mobile Forensic Tools
Tools like Cellebrite & XRY can extract encrypted data from
locked phones.
• Cloud Forensics
Advancements in retrieving logs, timestamps, and data access
history f services like Google and AWS.
• Memory Forensics
Live RAM analysis helps detect malware or stolen credentials in
real-time.
THANK YOU