Skip to main content

What if Sherlock Holmes is a Digital Detective?


In this series of the blog, I’m going to put Windows Forensics with Sherlock Holmes. In this series, Sherlock Holmes is going to teach you how to solve the cases in the Digital world.

John Watson: Hey, Sherlock how you are going to start your first digital case?
Sherlock Holmes: Let me explain you the style of investigation that I follow to solve a digital case
Main Part of Forensic investigation is Collection of Scientific evidence
·        Rule 1: Maintain Integrity.
·        Rule 2: Maintain the chain of custody. 
·        Rule 3: Document everything
·        Rule 4: Follow standard practices.
Phases of Investigation
·        Evidence Preservation.
·        Evidence Searching.
·        Event reconstruction.
Watson: Where you are going to do all this, do we have proper setup?
Sherlock: Don’t worry Pal, it just requires a simple setup


Response kit

·        CD-ROM and USB.

·        Hardware: Write Blocker.
·        Linux Distro and Windows 7.
Watson: What is the procedure to Start a investigation ?
Sherlock:
Starting an Investigation
·        Open a Case file.
·        Talk to user
·        Why did they call you?
·        Why do they think there is a problem?
·        What is known about the potential victim system.
·        Document everything.
Constable Clark: Hey Sherlock !! We had a case for you Sir …..

To be continued !!!
The outcome of this blog is to understand the basic concepts of Digital Forensics. The next blog will be on live analysis of the system.

Comments

Popular posts from this blog

Can Blockchain be the Iron Man of Data Security?

  Recent incident in Cyber Space shown that how vulnerable the data is and how important data security is to the user or an organization. There are various mechanisms out in the market in terms of data protection. What may be the reason for Data Thefts and Loss of Data Privacy? Lack of privacy towards the system is becoming more vulnerable to data thefts. For example, using weak passwords and lack of application regarding Cryptography. Cyber Criminals are finding the vulnerabilities in the system like Thanos finding the Infinity stones. Blockchain is the Iron Man of the Data Security. Blockchain Architecture will help reduce data theft and data tempering. What is Blockchain? Blockchain is growing list of records called blocks which are cryptographically hashed with pervious block. Blockchain follows the Merkle tree Data Structure Merkle Tree : In  cryptography  and  computer science , a hash tree or Merkle tree is a  tree  ...

Cyber Kurukshetra – An inspiration from the Mahabharata.

  The Mahabharata is an ancient Indian epic where the main story revolves around two branches of a family - the Pandavas and Kauravas - who, in the Kurukshetra War, battle for the throne of Hastinapura. At 100,000 verses, it is the longest epic poem ever written, generally thought to have been composed in the 4th century BCE or earlier. The Mahabharata is written by the Ved Vyas Maharshi. Mahabharata teaches the way of living for a human being. As an inspiration, we can interlink Mahabharata to Cyber Space or Cyber World and take valuable life lessons. We can grab some quick lessons from Mahabharata that will help one in their Cyber Space to stay safe and secured from Cyberattacks. So, this blog will be helping one to stay safe and secure in the Cyberspace. Ashwathama hatha narova kunjarova Explanation: It means  Ashwathama  is dead. And kunjaraha means elephant. But this was used as a ploy to kill  Ashwathama's  father,  Dronacharya . Yudhisthir is kn...

Sherlock’s First Digital Case

In this blog, Sherlock is going solve his first cases by using a concept called live analysis of a computer Constable Clark:  Hello Mr.Sherlock!! We had a case for you. Sherlock:  Hmm!! Go on Clark.                            Constable Clark:  A company XYZ reported a data breach that happens to them, we are trying to solve this case but we are unable to find any clue we need your help Mr.Sherlock. Sherlock:  Watson!!! 1.      I need all the IDS records of the company In Digital forensics analysis plays a major role to get culprits. The major part of cases is done in IDS record analysis. 2. I want you to take the details of Previous pen-testing audit records and system repair details of the past few months. Watson :  What does an IDS record consists? Sherlock :  An Intrusion Detection System (IDS) is a system...