Computer Crime Search/identifying Extract Preserve Analyze/interpret Decision Deleted Files Recovery - Most OS and FS do not always erase physical file data - Searching file header + Reconstruct deleted materials Cyber Terrorism Drug Trafficking Application of science to answer questions in interest of the above Status needed For Classified Information TAKES TIME Has Impact on your Job Application and Salary DoD, DHS, DoE, DoJ Tools Private Organizations Government NYPD to boost gang unit over social media violence To combat teen violence fueled by dares and insults traded on social media. "By capitalizing on the irresistible urge of these suspects to brag about their murderous exploits on Facebook, detectives used social media to draw a virtual map of their criminal activity over the last three years," Volatile Data Digital Forensics Ground rules Sabotage Advantages Private Organizations Spam Overview Acceptance of Computer Forensics "Buying drugs on the Internet is really easy. You only need an Internet cafe, a credit card, and it's done," said Daniel Altmeyer, an Interpol officer attending the World Forum Against Drugs in the Swedish capital this week. Live Analysis on RAM - Data stored in RAM may be lost owing to powering down - Using tools like COFEE to recover data by "Live Analysis" Computer forensics Network forensics Database forensics Mobile device forensics Crime Blood Fraud Robbery Computer forensics is not limited only to computer media ... Skills Needed • Bachelor's Degree in Computer Science, Information Systems or Related Field • Master's Degree Preferred • One or More Related Certifications such as the EnCE, CFCE, CCE, or CISSP • Knowledge of a programming or scripting language • Experience with volatile memory analysis This position requires the candidate to already possess an active Top Secret clearance and to maintain the clearance with the ability to obtain a SCI/CI Poly. Identify Collect Preserve Present Certifications Private Investigator Social Media Violence Spam Fraud Sabotage Harassment Threats Drug trafficking Cyber terrorism Cyber warfare Salary The use of computer network tools to shut down critical national infrastructures (e.g., energy, transportation, government operations) To coerce or intimidate a government or civilian population. The intimidation of civilian enterprise through the use of high technology to bring about political, religious, or ideological aims, actions that result in disabling or deleting critical infrastructure data or information. Security Clearance Scan through massive data. Quick & exhaustive Government Cross-Drive Analysis - Not mature enough Live Analysis - Volatile data recovery Deleted Files - Persistent data recovery Steganography - Hiding data + Hash Proof of legitimacy The judge & prosecutor must have extensive computer knowledge.

Transcript: Forensic Computer Science involves the identification, collection, preservation, examination, and analysis of computer evidence stored in the form of magnetically encoded information. Law enforcement officers, investigators, computer auditors, network administrators, and other professionals have had to respond to the above need for collection of evidence by developing tools and techniques to extract computer evidence that is admissible in court. The salary a computer forensic investigator earns can depend on the industry. For example, investigators who work as government contractors earn a salary between $55,378 and $86,451, while workers in legal services earn a lower salary, between $50,090 and $81,441. What kind of training would you need? You would need a strong background in computer hardware, software systems and networks. Often computer forensics degrees are graduate level degrees. Computer forensic professionals typically have a bachelor’s degree in computer science. According to the Bureau of Labor Statistics, colleges and universities may offer degree programs in computer forensics. Forensic investigators in finance may have additional education in accounting and finance. The salary a computer forensic investigator earns can depend on the industry. For example, investigators who work as government contractors earn a salary between $55,378 and $86,451, while workers in legal services earn a lower salary, between $50,090 and $81,441. What would you do as a computer forensics specialist? You would assist others in the recovery of evidence by accessing microcomputer systems, networks, or data storage devices to recover data and determine whether it has been tampered with, deleted, or damaged. Even data that has been deleted is often recoverable from the hard drive and you would be the person trying to recover it. Computer Forensics

Transcript: Criminal Prosecutors - Rely on evidence obtained from a computer to prosecute suspects and use as evidence Civil Litigations - Computer data can be used in fraud, divorce, harassment, or discrimination cases Insurance Companies - Evidence discovered on computer can be used to mollify costs (fraud, worker's compensations, arson, ect) Private Corporations - Obtained evidence from employee computers can be used as evidence in harassment, fraud, and embezzlement cases Law Enforcement Officials - Backup search warrants and post-seizure handling Individuals/Private Citizens - Obtain services of specialists to support claims Binary Code – Acquisition Physically or remotely obtaining possession of the computer, all network mappings from the system, and external physical storage devices – Identification This step involves identifying what data could be recovered and electronically retrieving it by running various Computer Forensic tools and software suites – Evaluation Evaluating the information/data recovered to determine if and how it could be used again the suspect for employment termination or prosecution in court – Presentation This step involves the presentation of evidence discovered in a manner which is understood by lawyers, non-technically staff/management, and suitable as evidence as determined by United States and internal laws Theft or trade secrets Fraud Extortion SPAM investigations Virus distribution Homicide Investigations Unauthorized use of personal information Forgery Embezzlement Unauthorized activity Tracking internet browsing habits Sexual Harassment Software Piracy The role of computer Forensics will play a large role in society as computer technology emerges. It is an extremely hot topic and is used widely among all industries. Corporations and government agencies hire computer forensics specialists whenever they need a computer-related crime investigated. The specialists gather evidence from various media and present the evidence to whomever has ordered it or in some cases, in a court of law. And one more thing... Computer forensics involves the preservation, identification, extraction, documentation, and interpretation of computer media for evidentiary and/or root cause analysis. Examples: -Recovering thousands of deleted emails -Performing investigation after multiple users had taken over the system Thank you for your attention! Computer Forensics is a four step process What is Computer Forensics? Conclusion • Need for information security workers will continue to grow, especially in computer forensics • Computer forensics specialists are highly trained consultants who have the ability to solve complex computer crime-related issues. Specialists typically hold degrees in computer science, computer engineering or computer information systems. Who uses Computer Forensics? Computer Forensics Reasons for Evidence As computers become more prevalent in the world, more computer crimes will occur.

Forensics Powerpoint

Transcript: Forensic Science-Application of science to those criminals and civil laws that are enforced by police agencies in a criminal justice system History No exact origination, but said to be in China based off of a book with the earliest known mention of the concept. Mathiew Orfila was named the Father Of Toxicology. Alphonse Bertillion established the first sceince system of personal identification in 1879. Francis Galton conducted the first definitive studey of fingerprints and classification. Leone Lattis developed the procedure to determine blood type from dry blood stains. The first crime lab was established in Los Angeles, California in 1923. The first federal lab was established in 1932. Forensic Science is broken down into 4 subdivisions. 1) Forensic Anthropology-Application of physical anthropology in a legal setting 2) Cyber Forensics-The gathering of digital data that is used in the court of law 3) Forensic Engineering-The invetsigation of materials, products, structures or compounds that fail to operate or do not function as intended 4) Forensic Entomology-The use of insects and their anthropod relatives that inhabit decomposing remains to aid in legal investigations Convictions are made using this chosen area of chemistry. There are several millions, maybe billions, of pictures to show proof. This chosen area of chemistry helps find the culprits to murders and help link people to investigations everyday. Without forensics the crime rate would rise because noone would get caught. 2 Careers in Forensic Science 1) Associate Medical Examiner A) Doctors who work with deceased bodies to determine cause and time of death. They average up to $230,000 or higher a year based on experience. B) They require a medical degrees in Anatomy and Physiology. C) The University of Pheonix is one school that has these majors to take up. D) California Pacific Spine Institute is a company that offers this career. 2) Forensic Lab Scientist A) Help solve crimes by collecting and analyzing physical evidence and other facts found at the scene. B) They require a 4-year degree in either physics, biology, microbiology, chemistry, medical technology, or genetics. C) They average $1,900 monthly. Up to 3,000 monthly with previous experience. Also varies with states, can make up to $35,000 to $50,000. University of Springsboro has Genetics as one of the majors that can be taken up. Virginia Dept. of Forensic Science is a company that offers this career. Chemistry Project

