Research Projects

Cloud Forensics

Cloud storage is a new technology that makes it possible for users to upload data to the web, allowing for instant accessibility and the ability to share data with others at any time. [PDF]

Elcomsoft iOS Forensics Toolkit Guide

Elcomsoft iOS Forensic Toolkit is a set of tools aimed at making the acquisition of iOS devices easier. It consists of Toolkit Ramdisk and a set of tools to load the Ramdisk onto the iOS device. [PDF]

HDD Water Damage Report

Our goal for this project is to determine how long a hard drive can stay submerged under water before the data becomes irretrievable. [PDF]

IEF for Mobile Devices

For this project, we will be using IEF Advanced to analyze images from Android and iOS devices. Our goal is to learn what information IEF extracts from these devices and how that can help law enforcement and forensic investigators. [PDF]

Pirate Browser Artifacts Report

In our experiment, we wanted to test the difference between PirateBrowser's artifacts and its parents, Mozilla Firefox 23 and Firefox Portable. [PDF]

Forensic Acquisition of Websites (FAW) Tool Review

Forensic Acquisition of Websites (FAW) is a way to forensically acquire a website or webpage as it is viewed by the user. [PDF]

Tool Comparison

This project will be benchmarking three digital forensic tools: EnCase v7.04.01, FTK, and Imager v3.1.1.8, as well as the SANS SIFT Workstation v2.14. [PDF]

iPhone Artifacts

This report outlines our project in which we compare two of the more current versions of the iPhone, the iPhone 3GS and the iPhone 4, in order to see where applications store their files. [PDF]

Plaso

The purpose of this project is to compare the results of Plaso against those from Log2timeline. [PDF]

Jump Lists Forensics

This project will help members of the LCDI and other members of the forensic community to see how Jump Lists can be very helpful in establishing a timeline of events on a suspect's computer. [PDF]

Shattered Forensics

This tool provides a reliable method of acquisition of artifacts from Android devices, such as Google Glass. [PDF].

XRY Tutorial: Logical Extraction of Data from Windows OS Devices

The following is a step-by-step walkthrough for using Micro Sytemation's product XRY to extract data for Windows OS phones. [PDF].

Retrieving Data from Apple iOS Devices Using XRY

The following is a step-by-step walkthrough for using Micro Sytemation's product XRY to perform a logical data extraction on Apple iOS phones. [PDF].

Retrieving Data from Android OS Devices Using XRY

The following is a step-by-step walkthrough using Micro Sytemation's product XRY to perform a logical data extraction for Android OS phones. [PDF].