Digital Forensic
Digital forensics is the application of investigation and analysis techniques to gather and preserve evidence from a particular computing device in a way that is suitable for presentation in a court of law. The goal of computer forensics is to perform a structured investigation and maintain a documented chain of evidence to find out exactly what happened on a computing device and who was responsible for it.
Why is Digital Forensic important?
Digital forensics helps ensure the integrity of digital evidence presented in court cases. As computers and other data-collecting devices are used more frequently in every aspect of life, digital evidence — and the forensic process used to collect, preserve, and investigate it — has become more important in solving crimes and other legal issues.
Types of digital forensics
There are various types of computer forensic examinations. Each deal with a specific aspect of information technology. Some of the main types include the following:
Database forensics: The examination of information contained in databases, both data and related metadata.
Email forensics: The recovery and analysis of emails and other information contained in email platforms, such as schedules and contacts.
Malware forensics: The process to identify possible malicious programs and analyzing their payload. Such programs may include Trojan horses, ransomware, or various viruses.
