In this course students will explore advanced methodologies and techniques including proper methods for maintaining integrity of forensic evidence including “chain of custody”, imaging digital media, examination of forensic information using manual and automated methods, and analysis of the findings and reporting. Students will be able to develop a profile of an individual’s activity, determine the manner in which an operating system or application has been subverted, recover “deleted” and/or intentionally hidden information from various types of media, and demonstrate proficiency with handling different kinds of components including Mobile Device Forensics. Students will collect, examine, analyze and prepare detailed reports showing the relevance of digital evidence to mock cases. Upon successful course completion students will be able to collect and analyze digital evidence.
MSCS639 Cyber Forensics