Book description
Become well-versed with forensics for the Android, iOS, and Windows 10 mobile platforms by learning essential techniques and exploring real-life scenarios
Key Features
- Apply advanced forensic techniques to recover deleted data from mobile devices
- Retrieve and analyze data stored not only on mobile devices but also on the cloud and other connected mediums
- Use the power of mobile forensics on popular mobile platforms by exploring different tips, tricks, and techniques
Book Description
Mobile phone forensics is the science of retrieving data from a mobile phone under forensically sound conditions. This updated fourth edition of Practical Mobile Forensics delves into the concepts of mobile forensics and its importance in today's world.
The book focuses on teaching you the latest forensic techniques to investigate mobile devices across various mobile platforms. You will learn forensic techniques for multiple OS versions, including iOS 11 to iOS 13, Android 8 to Android 10, and Windows 10. The book then takes you through the latest open source and commercial mobile forensic tools, enabling you to analyze and retrieve data effectively. From inspecting the device and retrieving data from the cloud, through to successfully documenting reports of your investigations, you'll explore new techniques while building on your practical knowledge. Toward the end, you will understand the reverse engineering of applications and ways to identify malware. Finally, the book guides you through parsing popular third-party applications, including Facebook and WhatsApp.
By the end of this book, you will be proficient in various mobile forensic techniques to analyze and extract data from mobile devices with the help of open source solutions.
What you will learn
- Discover new data extraction, data recovery, and reverse engineering techniques in mobile forensics
- Understand iOS, Windows, and Android security mechanisms
- Identify sensitive files on every mobile platform
- Extract data from iOS, Android, and Windows platforms
- Understand malware analysis, reverse engineering, and data analysis of mobile devices
- Explore various data recovery techniques on all three mobile platforms
Who this book is for
This book is for forensic examiners with basic experience in mobile forensics or open source solutions for mobile forensics. Computer security professionals, researchers or anyone looking to gain a deeper understanding of mobile internals will also find this book useful. Some understanding of digital forensic practices will be helpful to grasp the concepts covered in the book more effectively.
Table of contents
- Title Page
- Copyright and Credits
- About Packt
- Contributors
- Preface
-
Introduction to Mobile Forensics
- The need for mobile forensics
- Understanding mobile forensics
- Challenges in mobile forensics
- The mobile phone evidence extraction process
- Practical mobile forensic approaches
- Potential evidence stored on mobile phones
- Examination and analysis
- Rules of evidence
- Good forensic practices
- Summary
- Section 1: iOS Forensics
- Understanding the Internals of iOS Devices
- Data Acquisition from iOS Devices
- Data Acquisition from iOS Backups
- iOS Data Analysis and Recovery
- iOS Forensic Tools
- Section 2: Android Forensics
- Understanding Android
-
Android Forensic Setup and Pre-Data Extraction Techniques
- Setting up a forensic environment for Android
- Connecting an Android device to a workstation
-
Screen lock bypassing techniques
- Using ADB to bypass the screen lock
- Deleting the gesture.key file
- Updating the settings.db file
- Checking for the modified recovery mode and ADB connection
- Flashing a new recovery partition
- Using automated tools
- Using Android Device Manager
- Bypass using Find My Mobile (for Samsung phones only)
- Smudge attack
- Using the forgot password/forgot pattern option
- Bypassing third-party lock screens by booting into safe mode
- Secure USB debugging bypass using ADB keys
- Secure USB debugging bypass in Android 4.4.2
- Crashing the lock screen UI in Android 5.x
- Other techniques
- Gaining root access
- Summary
- Android Data Extraction Techniques
- Android Data Analysis and Recovery
- Android App Analysis, Malware, and Reverse Engineering
- Section 3: Windows Forensics and Third-Party Apps
- Windows Phone Forensics
- Parsing Third-Party Application Files
- Other Books You May Enjoy
Product information
- Title: Practical Mobile Forensics - Fourth Edition
- Author(s):
- Release date: April 2020
- Publisher(s): Packt Publishing
- ISBN: 9781838647520
You might also like
book
Practical Mobile Forensics - Second Edition
A hands-on guide to mastering mobile forensics for the iOS, Android, and the Windows Phone platforms …
book
Practical Mobile Forensics - Third Edition
Investigate, analyze, and report iOS, Android, and Windows devices About This Book Get hands-on experience in …
book
Learn Computer Forensics - Second Edition
Learn Computer Forensics from a veteran investigator and technical trainer and explore how to properly document …
book
Digital Forensics and Incident Response - Third Edition
Incident response tools and techniques for effective cyber threat response Key Features Create a solid incident …