Posts

Digital Forensics Types & Challenges

Image
Types of Digital Forensics Three types of digital forensics are: 1. Disk Forensics:- It deals with extracting data from storage media by searching active, modified, or deleted files. 2. Network Forensics:- It is a sub-branch of digital forensics. It is related to monitoring and analysis of computer network traffic to collect important information and legal evidence. 3. Wireless Forensics:- It is a division of network forensics. The main aim of wireless forensics is to offers the tools need to collect and analyze the data from wireless network traffic. 4. Database Forensics:- It is a branch of digital forensics relating to the study and examination of databases and their related metadata. 5. Malware Forensics:- This branch deals with the identification of malicious code, to study their payload, viruses, worms, etc. 6. Email Forensics:- Deals with recovery and analysis of emails, including deleted emails, calendars, and contacts. 7. Memory Forensics:- It deals with collecting data from s...

Digital Forensics Information & Phases

Image
What Is Digital Forensics? Digital forensic science is a branch of forensic science that focuses on the recovery and investigation of material found in digital devices related to cybercrime. The term digital forensics was first used as a synonym for computer forensics. Since then, it has expanded to cover the investigation of any devices that can store digital data. Digital forensics is the process of identifying, preserving, analyzing, and documenting digital evidence. This is done in order to present evidence in a court of law when required. “ Digital forensics is the process of uncovering and interpreting electronic data. The goal of the process is to preserve any evidence in its most original form while performing a structured investigation by collecting, identifying, and validating the digital information to reconstruct past events. The context is most often for the usage of data in a court of law, though digital forensics can be used in other instances. ” Steps of Digital For...

Diva App

Image
Step 1:- Download " Diva App " In " Your Phone ". Step 2:- In " Fast Task " Credit Card Number To Find It. Open " WPS And adb logcat " Commend Perfume It. You Can See " Card Number " Is " Display " In " WPS ". Step 3:- In " Second Task " Find The " Key " Of It Using The " jadx gui ". Step 4:- In " Third Task " " Insecure Data Storage " System To Get " Data " Using " WPS ". Open WPS And Type " cd data/data/jakhar.aseem.diva/shared_prefs/jakhar.aseem.diva_preferences.xml ". You Can See " User Name " And " Password Display ". Step 5:- In " Fourth Task " Insecure Data Storage System To Get Data Using " WPS ". Open WPS And Type " cd data/data/jakhar.aseem.diva/database/ls ". After " Select sqlite3 " ids2 Inside .tables Perfume " select * from myuser " After ;. You Can ...

Reverse The APK

Image
Requirements: Windows Device Apk dex2jar JDGUI JDGUI-GUI Step 1:- download apk. download Siged-jar.apk File.   Step 2:- Convert Apk Format To Zip Format. Step 3:- There Is Two Method To Reverse The Apk. 1) Static  2) Dynamic(Automatic) Static After Zip Is Extend The Folder. Step 4:- You Can See Dex File In Side Folder. Download Dex2jar. It Can Be Using dex2jar To Convert It Into Jar File. Step 5:- Download JDGUI. jd-gui-windows and Open The Jar File Converted It. Step 6:- Dynamic(Automatic) Open jadx-gui-1.2.0-no-jre-win And Select Apk.

Digital Forensics Tools

Image
Digital forensics tools can fall into many different categories, some of which include database forensics, disk and data capture, email analysis, file analysis, file viewers, internet analysis, mobile device analysis, network forensics, and registry analysis. Many tools fulfill more than one function simultaneously, and a significant trend in digital forensics tools are “wrappers”—one that packages hundreds of specific technologies with different functionalities into one overarching toolkit.  New tools are developed every day, both as elite government-sponsored solutions and basement hacker rigs. The recipe for each is a little bit different. Some of these go beyond simple searches for files or images, and delve into the arena of cybersecurity, requiring network analysis or cyber threat assessment. When there is a tool for everything, the most pressing question is which one to use. Below, ForensicsColleges has collected some of the best tools for digital forensics and cybersecurity...

MITRE ATT&CK Splunk

Image
Introduction MITRE ATT&CK® is a globally-accessible knowledge base of adversary tactics and techniques based on real-world observations. The ATT&CK knowledge base is used as a foundation for the development of specific threat models and methodologies in the private sector, in government, and in the cybersecurity product and service community. With the creation of ATT&CK, MITRE is fulfilling its mission to solve problems for a safer world — by bringing communities together to develop more effective cybersecurity. ATT&CK is open and available to any person or organization for use at no charge. The MITRE ATT&CK Design and Philosophy document from March 2020 says the following: At a high-level, ATT&CK is a behavioral model that consists of the following core components: • Tactics, denoting short-term, tactical adversary goals during an attack; • Techniques, describing the means by which adversaries achieve tactical goals; • Sub-techniques, describing more specific m...

Analysis the APK

Image
Requirements: Windows Device Mo bSF Step 1: open power shell and write command ./run.bat 127.0.0.1:8000.   Step 2: Now in your browser got to " http://localhost:8000 "and upload the APK into it:  Step 3: Now that you have '" uploaded the APK ", MobSF will start analyzing it. Step 4: When the " analysis completes " we will be presented with a nice " dashboard summarizing the result " Step 5: The source Android Manifest xml file. Now we have lots of information to look through, but since we are only interested in the API key we may want to start searching for it in the ''Android Manifest xml file'' . We can view it by ''clicking in the dark blue button'' in the section “ View Code ” at the bottom right of the above screenshot, and we will land on this page: Step 6: String Section. As we can see from the Android manifest file the values for "MANIFEST_API_KEY and GRADLE_API_KEY_PLACEHOLDER" are readily ...