Evidence Acquisition

In the field of computer forensics, how evidence is acquired or discovered is vital if the information discovered is to be used within the legal process as evidence, in any context.

The purpose of an examination is to identify and uncover information that speaks to the facts in issue in a case. This might include file and password recovery, Internet histories, e-mail and chat messages, logon and user access times, and file reconstruction (to name but a few). We complete our analysis by organizing information into a meaningful and comprehensive reports and by speaking to the facts through observations, expert opinions, inferences and conclusions.

