Everything Digital Forensics - From Certifications to Lab Setup

แชร์
ฝัง

ความคิดเห็น • 51

  • @cocobongo268
    @cocobongo268 ปีที่แล้ว +5

    Absolutely informative and straightforward to the main goals.
    Amazing video, my dear friend.
    By the way, my best wishes for his new coming year.
    :)

    • @forensicguy
      @forensicguy  ปีที่แล้ว

      Thank you! This is my 5 part video series from 2021 that I condensed into single 1 hour video.
      Have a happy new year my friend!

  • @batmanasdasd
    @batmanasdasd ปีที่แล้ว +3

    omg tysm what an awesome video

  • @cocobongo268
    @cocobongo268 ปีที่แล้ว +1

    My dear friend.
    Have a nice year, full of work and good health.
    My best regards.
    As always, thanks for sharing knowledge and make this world a better place.
    :)

  • @ahmadalkaabi2692
    @ahmadalkaabi2692 ปีที่แล้ว +2

    Thank you, This was very informative.

  • @kevinx2381
    @kevinx2381 ปีที่แล้ว

    Hi I have watched some of your older videos, very informative and honest. Thanks for spilling the beans on all the con artists out there regarding recovering data and bogus software. It seem people just want to have our pants down and make money. Keep up the good work, We need more honest people in the world like you. Best Regards Kevin

  • @CustomComputing
    @CustomComputing ปีที่แล้ว +1

    what a great surprise a new video!!! happy new year! and thanks again for the help this year!

  • @jolt06
    @jolt06 ปีที่แล้ว +1

    found your video while looking for help with aa job interview prep for Digital forensics. I'm literally on my last semester of my masters in Cyber security digital forensics. I really want to be in this field of work.

    • @vdej01
      @vdej01 ปีที่แล้ว

      How has the job hunt been? Are you settled now?

    • @jolt06
      @jolt06 ปีที่แล้ว

      @@vdej01 I was able to get a job as a pentester.

    • @vdej01
      @vdej01 ปีที่แล้ว

      @jolt06 Congrats on the journey ahead!
      I have an engineering background but exploring what opportunities are inforensics

  • @ToomsDotDk
    @ToomsDotDk ปีที่แล้ว +1

    Another good free tool that i think you missing.
    Arsenal Image Mounter from Arsenal Recon, There is an free version and an payed version there can boot E01 files and auto unlock the the login.
    Note, i do not work for Arsenal.

    • @forensicguy
      @forensicguy  ปีที่แล้ว

      Is it the same as OSF mount? It sounds familiar. Thanks for bringing it up. I definitely missed many great tools.

    • @ToomsDotDk
      @ToomsDotDk ปีที่แล้ว

      @@forensicguy yes it is an tool for mainly mounting images but it can alot more, like it mounts the images as "real scsi disk" so windows see them as real hardware and there for volume shadow copy works.
      i have the payed version and find the many function very very use full

  • @HalifaxComputersRepair
    @HalifaxComputersRepair ปีที่แล้ว +1

    oh yeah and the rcmp is your best friend because no matter what price you give them they will pay the full price , i know because i deal with the rcmp customers as well , they pay handsomely , there your best customers , i did find you right away ....
    Merry christmas and happy new year lol

    • @forensicguy
      @forensicguy  ปีที่แล้ว

      Law enforcement definitely pays but they have a limit how much they will pay

  • @bobmorton4633
    @bobmorton4633 ปีที่แล้ว

    Well, good information. Things have come a long way in the last 15 years since I got out of forensics. Although I am not certified like you, nor did I have all the gear you have, I did do a lot of data recovery for a few shops. Encase was nice back in the day. Are you open to the public to do some chip repairs? Or open to giving some advice on equipment for pulling data off of a damaged chip?

  • @sir9270
    @sir9270 ปีที่แล้ว

    What are your thoughts on GIAC certs geared towards Digital Forensics? Such as GCFA or GCFE? Are they compatible to positions like yours in the field? Also you mentioned about running your own digital forensics company, how does that work legally? Is that more geared towards consulting for private and government companies?

  • @Gksec-lr7xg
    @Gksec-lr7xg 10 หลายเดือนก่อน

    Now for the most important question, how do you make your tea? I can't seem to make green tea taste good. 😂

  • @honeybadger1427
    @honeybadger1427 ปีที่แล้ว +2

    Hi. You summarized the DF master's degree program I'm finishing this Spring semester in one long video. Have you done discovery work for a civil case?

    • @forensicguy
      @forensicguy  ปีที่แล้ว +1

      Glad my video was helpful! I do mostly civil work. How long was your program?

    • @honeybadger1427
      @honeybadger1427 ปีที่แล้ว +1

      @@forensicguy 2 years. However, in some cases I learned more from you than from some of the professors from the program. One of my classes this semester was about eDiscovery for the DFE. So I was wondering how much eDiscovery works a real DFE does?

  • @mrperson88
    @mrperson88 6 หลายเดือนก่อน +2

    What is the cost of the CCE exam?

    • @forensicguy
      @forensicguy  5 หลายเดือนก่อน +1

      ISFCE is going through restructuring at the moment, you might want to look into other certs for now until they are back on their feet. The CCE cert is still valid and I was just recertified this month, but I am not sure if they are taking on new members at the moment.

  • @TotalTech2.
    @TotalTech2. ปีที่แล้ว

    How would you go about getting into a career in mobile forensics?

    • @forensicguy
      @forensicguy  ปีที่แล้ว

      Same idea

    • @TotalTech2.
      @TotalTech2. ปีที่แล้ว

      @@forensicguy Sorry what do you mean? What is the first step into getting started in digital forensics? What cert should I start with?

  • @Litehamer
    @Litehamer ปีที่แล้ว +1

    Hi . Thank you for the video. I’ve been in law enforcement for almost 20 years and am considering a move to digital forensics. A small company has offered me a job an a great deal of cellebrite training . I’m really interested but wonder if it’s too vendor specific. I’ve used XRY and been exposed to cellbrite reader but worry it my be too limited. Any thoughts appreciated.

    • @forensicguy
      @forensicguy  6 หลายเดือนก่อน +1

      I had XRY.. after update to v7 I HATED IT and never renewed it. I prefer cellebrite over anything

  • @Fizbun
    @Fizbun ปีที่แล้ว +2

    Hey, have you ever used Datapilot 10 device or heard about it? How would a phone extraction compare to UFED?

    • @forensicguy
      @forensicguy  ปีที่แล้ว +1

      I was given a live demo last year. It’s different than UFED. It’s more for live data acquisition especially for 3rd party apps. They have a screen recording feature that can automatically capture apps otherwise not supported by most forensic tools. It would be more useful for law enforcement in the field that just need a quick or very specific collection.

    • @Fizbun
      @Fizbun ปีที่แล้ว +1

      @@forensicguy I would agree that it seems more useful for someone on the field/scene. Usually in the lab you have more powerful tools or even just computer.
      Maybe useful in situations like in Ukraine where your lab is not usable due to it being in constant danger. Having a "mobile lab" seems the next best thing in that case.
      I also realized that these devices are 4+ years old. It also has a micro-USB port and I wonder how much of a hindrance that would be if compared to like a USB-C port. Ideally I'd like it to have two USB-C ports and a proper SSD (instead of SD-card).

  • @Josh-lv6jz
    @Josh-lv6jz ปีที่แล้ว

    What metadata can be recovered if any at all from cached images in apples photo gallery photo picker?

  • @sarahkitty4729
    @sarahkitty4729 ปีที่แล้ว +1

    Anti forensics is a more worthwhile field. If a device can’t remember anything, nothing can be recovered 😉

    • @knewdist
      @knewdist 7 หลายเดือนก่อน

      😁

  • @johnburrows7938
    @johnburrows7938 ปีที่แล้ว +1

    Where start in computer forensics? Maybe update the title to where to start?

    • @forensicguy
      @forensicguy  ปีที่แล้ว

      Wow, I looked at this title bunch of times, other people too and nobody noticed it. Thanks for pointing it out. I will fix it

  • @christiancorvus3041
    @christiancorvus3041 ปีที่แล้ว +1

    I'm currently a 3rd year forensic science student, do you its still possible to pursue DF with my course and not computer science?

  • @blenderbeachwavesblend
    @blenderbeachwavesblend ปีที่แล้ว

    What types of forensics have you done besides, the more negative. Somebody sent off viruses or something.

  • @sarakazuya432
    @sarakazuya432 ปีที่แล้ว

    hi sir my ssd is dead 1 chip if i remove that chip can i run it that ssd again sir pls answer me

    • @forensicguy
      @forensicguy  ปีที่แล้ว

      It wouldn’t work

    • @sarakazuya432
      @sarakazuya432 ปีที่แล้ว

      @@forensicguy yes sir if i buying 1 dead ssd and i put the good nand chip again it can work sir? pls answer me sir thank you sir

  • @HalifaxComputersRepair
    @HalifaxComputersRepair ปีที่แล้ว +1

    hey what happen to you lol

    • @forensicguy
      @forensicguy  ปีที่แล้ว

      Busy af

    • @HalifaxComputersRepair
      @HalifaxComputersRepair ปีที่แล้ว

      @@forensicguy Canada bans TikTok on government issued mobile devices hahahahha

  • @assmonkey9202
    @assmonkey9202 ปีที่แล้ว

    Would be super interested to see a video of you doing recovery from a gpixel running graphene👀