Computers

Computer forensic analysis involves the examination of data and system logs on computer systems.
  • Operating systems - analysis of Windows, Linux, and macOS operating systems to uncover user activities, installations, login records, and system events
  • File systems and data structures- identification, interpretation, and reconstruction of files, folders, and metadata in NTFS, FAT, exFAT, APFS, and other systems
  • Random-access memory - analysis of RAM content to detect processes, network connections, encryption keys, and other data
  • Artefacts and user activities - reconstruction of user activities, accessed content, browsing history, and used application.