Showing posts with label evidence. Show all posts
Showing posts with label evidence. Show all posts

ISO 17025 Toolkit

ISO 17025 Toolkit
Members at the Institute for Digital Forensics (IDF) Group at LinkedIn (http://www.linkedin.com/)  we are discussing the creation of an ISO 17025 Toolkit and assistance that might be offered by other QA standards.

You will need to be an approved but free to join participant of the Institute's IDF Group to gain access to the materials.

Deleted messages uncovers fake rape claim

Deleted messages uncovers fake rape claimHaving specialised in the UK for many years dealing with deleted data and having published many papers on 'deleted content', 'deleted text messages', 'deleted data mobiles' and 'deleted data may not amount to possession' when this subject raises its head it is worth making a record of it for later discussion.There are many aspects about deleted data that

Mobile Telephone Evidence (MTE) VOL7 MTE02 2010

Mobile Telephone Evidence (MTE) VOL7 MTE02 2010.- Market Trends.- Self Destructing SMS Message.- Mobile Antenna Forensics (MAF).- Historical Abstracts for GSM Cell Site Analysis©.- Product News.- Latest News US iPhone Jailbreaking Ruling.Now in its seven year MTE Newsletter latest edition is now available for download:.http://www.4shared.com/document/q0Nm6UMP/MTE_VOL7__MTE02_2010.html.Cell Site

Evidence and Admissibility Part 2

Evidence and Admissibility Part 2.In the first discussion on Evidence and Admissibility that appeared in Part 1 there was reference made to the International standards ISO17025 and ISO17020 and their proposed use as laboratory standards suited to forensics and evidence - http://trewmte.blogspot.com/2010/06/evidence-and-admissibility-part-1.html . In Part 2 further reference is made to ISO17025,

Evidence and Admissibility Part 1

Evidence and Admissibility Part 1The analysis that can never stop relates to issues associated with evidence and admissibility. We need thought provoking discussions to inform our knowledge. Also, we need to exercise our understanding of the work we are doing and whether it meets an acceptable criteria in the practices and procedures we follow. Moroever we should challenge perceptions we hold to

Linux - out-of-memory (L-OOM)

Linux - out-of-memory (L-OOM) Whilst researching on mobile phones using Linux OS I came across a report on guidelines for creating robust embedded systems (published in 2009). The report's discussion arrived at the topic out-of-memory (OOM) and perceived flaws with Linux overbooking the kernel. The report calls this 'OOM Killer' The report noted:"One Linux detractor says this about the

Evidence - Spooks BBC1 - Did you watch?

Evidence - Spooks BBC1 - Did you watch?.Did any of you watch Spooks tonight (BBC1, 9pm)? .The Muslim character said that his fanatic friends were logged under "Football"..The Spook took out the SIM Card from the phone and copied it using a SIM reader memory device..Questions:.1) Would it be obvious that names/numbers and groups are only recorded on SIM Card?.2) What about the mobile phone used by

Googling Jurors

Googling Jurors.There is an interesting article by Ralph Losey online which is worth reading:.Jurors Rebel, Defy Judges, and Google Their Own Truth.http://ralphlosey.wordpress.com/2009/11/15/jurors-rebel-defy-judges-and-google-their-own-truth/

Extra-Statutory

Extra-Statutory.Where, for illustrative purposes only, a Home Office circular regulates e.g. the use of listening devices and aural and visual procedures, the standards set by that document may be the same as those under a Stature (say RIPA or, previously, IOCA) but that Home Office circular does not mean by following its guidance it makes any acts or omissions compliant with the statutory

Mobile Evidence CDR/Billing Course

Mobile Evidence CDR/Billing Course.One-day live training session on mobile evidence CDR/Billing..- understanding and obtaining evidence- standards- relationship between network and user- relationship to cell site analysis (CSA).I am proposing this training with a number issues that impact in the background:.- obtain training at a cost-effective price in difficult economic times- people need

UK Criminal Evidence Delays

UK Criminal Evidence Delays.Due to delays in passing evidence to the defence certain building blocks of evidence used against a defendant are not being held by the prosecution, but worst still, the expert who obtains, for instance the tests and results, holds on to them because they claim their client (the Police) haven't made that a term of the instructions to pass them over. The police say they

Undercover Officer Down, how might SIM Access Control Class help? Part 1

PART 1: Undercover Officer Down, how might SIM Access Control Class help?.The following is a scenario created to help examiners and experts know more about how to determine what data in SIM/USIM elementary files can mean and to appreciate what is required to be understood before examining SIM/USIM and giving evidence. Computer forensics has made a significant contribution to data recovery that

Forensic Science Regulator

Forensic Science Regulator.I would urge all of you who examine mobile telephones and computers that if you want to do public sector work for evidence in civil and criminal proceedings in the UK and you are not on the Forensic Science Regulator's (FSR) list of approved suppliers then you may not get any work at all..Dr Chris Pamplin from the UK Register of Expert Witnesses has presented some open

.DT1 Files

.DT1 FilesWhy is this electronic file extension (.DT1) and significantly the data it contains important to the law of evidence and its relevance to generated original material obtained in criminal cases, but equally for civil cases, too? I will tell you more about that soon, its introduction into evidence and the technical and evidential arguments raised to get into evidence.For now, what you can

Barristers - Surrey Chambers

Barristers - Surrey ChambersOne of the most overlooked parts of the law when dealing with crimnal and civil cases is that an expert, professional and client comes into contact with Barristers and Barristers' Chambers. That is quite shocking really as we meet with Barristers virtually on a daily basis for mobile telephone, computer, software and technology evidence in criminal cases and other

Global Mobile Telephone Forensics and Evidence

Global Mobile Telephone Forensics and EvidenceIt is interesting to note, and a subject matter I have been keenly watching since this webblog started, the importance of mobile telephone forensics and evidence is receiving around the globe. It is very easy to get submersed into one's own country's (UK) activities in this area and forget how other countries have significantly increased their

Writing To Mobile Phones Under Examination

Writing To Mobile Phones Under ExaminationThere is always the debate as to what amounts to "forensic" processes and whether that can be left to human intervention to do that, whether a device alone can do that or whether it is the combination of human intervention and the device working together that can fulfil the objective? Perhaps germane and relevant to the above question is (1) knowing the

Expert Evidential Disclosure in Criminal Proceedings

Expert Evidential Disclosure in Criminal ProceedingsWhen dealing with mobile telephone evidence it is important to be aware of the rules of expert evidence. This too goes for technical and examiner witnesses. In the recent case of R -v- Lorraine Harris & Others (2005) EWCA Crim 1980 Lord Justice Gage was invited by counsel for the Crown to give guidance in relation to expert evidence where the

Switch On, Update, Lose Evidence

Switch On, Update, Lose EvidenceThe focus of this article relates to what can happen when switching on a mobile telephone and how data can change on a SIM Card. Essentially how a mobile telephone updates a SIM card relating to location data is down to how each make and model of mobile telephone has been programmed. When dealing with location data in SIM Cards it should not be assumed that every