- 10 Marks
Question
List FIVE techniques used in forensic process and briefly describe each.
Answer
- Data Recovery:
Retrieving lost or deleted files from digital storage devices for analysis and investigation. - Disk Imaging:
Creating an exact copy of the hard drive or storage device to preserve evidence without altering the original data. - Network Forensics:
Monitoring and analyzing network traffic to detect and investigate cyber intrusions, malware attacks, and unauthorized access. - Steganalysis:
The process of detecting hidden data or messages within digital files or images, often used to uncover covert communications. - File Carving:
Extracting data fragments from disk space, often when file systems are corrupted or erased, to recover usable digital evidence.
- Tags: Cybercrime, Data Recovery, Digital Forensics, Forensic Process, Legal Proceedings
- Level: Level 1
- Topic: Information Systems Development and Security
- Series: MAY 2021
- Uploader: Kwame Aikins