Digital Shield Inc.

Training Courses
Advanced Smartphone Forensics
Uncover Deep Mobile Evidence with Advanced Techniques

Advanced Smartphone Forensics

The usefulness of smartphones as a source of information in any investigation should never be underestimated, because they contain details about who was doing what, where and when. Smartphones are the new and improved personal computer, conveying communications and Internet access wherever we go, chronicling our private activities and geolocation details all the while. People and organizations are migrating rapidly to smartphones and other mobile devices, bringing with them an increasing quantity of digital evidence, sensitive information, and malicious attackers. These private, portable embedded systems create a substantial opportunity and challenge for forensic practitioners, and create security risks for organizations that have smartphones on their networks. Specialized methods and tools are required to extract and analyze data from smartphones, such as communications, multimedia, location information, and malware. Advanced Smartphone Forensic Analysis is crucial training for you to become an invaluable digital investigator equipped to exploit smartphones as a source of evidence and capable of responding to attacks against these devices.

What You Will Learn

Hands-On Exercises

In this training, learners are guided through investigative scenarios of increasing complexity in order to acquire the variety of technical and problem solving skills in this domain, equipping practitioners with knowledge and skills they can use immediately in their work. In addition, by teaching lessons learned from years of experience, we will help you handle common challenges in the field. This learning environment also contains supporting resources, including instructional materials covering methods and tools, a course discussion forum for collaboration, and personal mentoring by experts in the field. Learners emerge from this experience with a solid knowledge of forensic methods and tools applied to Android smartphones, and will be equipped with the skills needed to utilize digital evidence from these devices in any investigation.
This intensive hands-on course delves deeply into smartphones as a source of digital evidence, enabling practitioners to extract and analyze a wide variety of information from the most common devices. Topics covered and skills you will learn include:

Day 1: Forensic Analysis of Smartphones, Flash Memory & SQLite Databases

Any type of investigation can involve a smartphone, ranging from a source of evidence in homicides and terrorist attacks, to targets of identity theft and cyberattacks. Sex offenders have videotaped their crimes. Many vice officers and courts consider mobile devices to be an integral part of drug trafficking and dealing. Data thieves are developing malware specifically targeting smartphones. Although compact, mobile devices can contain significant digital evidence including schedules, memos, address books, e-mail messages, passwords, credit card numbers, and other personal information. As with all other specialized areas of digital forensics, a strong fundamental understanding of the underlying technology and data structures is vital for forensic examiners and investigators.
Skills You Will Learn:

Day 2-3: Forensic Analysis of Android devices and Apps

Digital investigators need to understand the inner workings of Android devices and how they store data in order to extract and interpret the information they contain. To accomplish this goal, take a deep dive into Android devices using specialized smartphone forensics tools such as Autopsy, Cellebrite and IEF. We delve into the file system layout on Android devices and discuss common areas containing files of evidentiary value. Traces of user activities on Android devices are covered as well as recovery of deleted SQLite records and media files. We also perform timeline and link analysis, and other forensic reconstruction using data recovered from smartphones.
Skills You Will Learn:

Day 3-4: Forensic Analysis of iOS Devices and Apps

In order to extract and interpret the information on Apple mobile iOS devices, digital investigators need to understand their inner workings and how they store data. To accomplish this goal, we delve into the file system layout on iOS devices and discuss common areas containing files of evidentiary value. Encryption, decryption, backup file parsing, traces of user activities are covered in detail.
Skills You Will Learn:

Day 4-5: Blackberry, Windows Phone & Capstone Investigative Scenario

Although Blackberry smartphones are well-designed to protect security and privacy, they can contain a variety of details about the user that can be useful in an investigation. In addition, given the increasing prevalence of Windows Phone/Mobile devices worldwide, it is important for forensic practitioners to understand how to locate and interpret useful information from these devices. Forensic analysts require a familiarity with interpreting and analyzing the information on Blackberry and Windows smartphones, and need to understand the limitations of existing methods for extracting data from these devices. Techniques and tools used for parsing common data structures on Blackberry and Windows devices, and recovering any deleted items.
Skills You Will Learn:
Ultimately, Advanced Smartphone Forensic Analysis will help you answer fundamental investigative questions:

Don’t miss this exciting new training!

To sign up for an upcoming Advanced Smartphone Forensic Analysis Course or to host please visit upcoming events or give us a call.

Don’t miss this exciting new training!

To sign up for an upcoming Advanced Smartphone Forensic Analysis Course or to host please visit upcoming events or give us a call.
Scroll to Top