Academic Integrity: tutoring, explanations, and feedback — we don’t complete graded work or submit on a student’s behalf.

Written Assignment: Executive Summary on Computer Forensics Suites Learning Obje

ID: 3838019 • Letter: W

Question

Written Assignment: Executive Summary on Computer Forensics Suites

Learning Objectives and Outcomes

Research a forensics suite.

Assignment Requirements

After completing the research on the most prominent Computer Forensics Suites, this assignment requires you to prepare a summary report of your findings. Based on the research you will do the following tasks:

Justify why you would suggest a particular suite for your local law enforcement agency.

Show how the suite helped to investigate computer forensics cases and cybercrime activity for your local law enforcement agency.

Create a professional report detailing the information above.

Things to consider in your research for forensics tools

Both commercial and open source computer forensics tool suites.

Cost and budgetary constraints.

Training requirements for the forensics tool and cost of training.

Legal and Ehtical issuses (computer science)

Explanation / Answer

ANSWER:

Forensic Suite – EnCase

CyberCrime Case: CyberStalking

As soon as the victim registered the case with the Cyber Crime cell, the stalker was alerted. He tried to delete all the files and folders from his local system, history logs and emails. When the cyber-crime cell was notified of this case. They took charge over the accused’s system and tried to investigate the system but were not able to find anything. Later the system was send for forensics, where many files/photos/emails related to the victim were found. Also, they were able to detect the time and date for the emails and messages send over to victim. EnCase was used by the forensic team for the forensic investigation and data recovery from accused’s system which were later used as evidences in the court. The report used as evidence had all the details about the sender, time, date, IP used, attachments, etc. This report was generated after evidence analysis in EnCase itself.

Why to use EnCase:

Open Source Tools comes with many limitations. It won’t be as versatile as EnCase or some other licensed Forensic Tool. You won’t have the liberty to view the data and files in all different available formats. Many Open Source tools are not able to detect and parse through all the locations, they will lack in report creation as per evidences analyzed.

Various Training Programs are available with Guidance Software (vendor for Encase). You can register and learn for various levels of training available with some pre-requisites for different certificates. Many Boot camp sessions are held whose ticket can be purchased with a long validity of over 18 months to take the session. Cost of training is competitive to other tools available in the market and is considered one of the best in the industry.