SYSTEM AND METHOD FOR COLLECTING FORENSIC DATA VIA A MOBILE DEVICE
First Claim
1. A method for conducting forensic investigations by investigators on an investigations field, the method comprising:
- receiving, by a processor, a digital search warrant including one or more search parameters for conducting a forensic investigation;
notifying a mobile device, by the processor, of the digital search warrant;
receiving, by the processor, a user command to download the digital search warrant in response to the notifying; and
downloading, by the processor, the digital search warrant to the mobile device in response to the received user command, wherein the digital search warrant is configured to be electronically parsed by the mobile device for automatically identifying and collecting data from a target device in the investigations field during a forensic investigation, wherein the automatically identifying and collecting of the data from the target device is done without modifying a state of the target device.
2 Assignments
0 Petitions
Accused Products
Abstract
A system and method for conducting forensic investigations by investigators on an investigations field using a mobile device. A digital search warrant is downloaded to the mobile device prior to conducting the forensic investigation. The digital search warrant defines the search parameters of the search to be conducted, including key terms, file types, and the like. The mobile device is coupled to a target device in the investigations field that is the subject of the forensic investigation. The mobile device parses the digital search warrant and automatically identifies and collects data from the target device based on the parsed digital search warrant. The automatically identifying and collecting of the data is done without modifying a state of the target device to retain forensic integrity during the investigation process.
12 Citations
23 Claims
-
1. A method for conducting forensic investigations by investigators on an investigations field, the method comprising:
-
receiving, by a processor, a digital search warrant including one or more search parameters for conducting a forensic investigation; notifying a mobile device, by the processor, of the digital search warrant; receiving, by the processor, a user command to download the digital search warrant in response to the notifying; and downloading, by the processor, the digital search warrant to the mobile device in response to the received user command, wherein the digital search warrant is configured to be electronically parsed by the mobile device for automatically identifying and collecting data from a target device in the investigations field during a forensic investigation, wherein the automatically identifying and collecting of the data from the target device is done without modifying a state of the target device. - View Dependent Claims (2, 3, 4, 5, 6, 7)
-
-
8. A method for conducting forensic investigations by investigators on an investigations field, the method comprising:
-
downloading a digital search warrant to a mobile device, the digital search warrant including one or more search parameters; coupling the mobile device to a target device in the investigations field; parsing the digital search warrant by the mobile device; and automatically identifying and collecting by the mobile device data from the target device based on the parsed digital search warrant during a forensic investigation, wherein the automatically identifying and collecting of the data is done without modifying a state of the target device. - View Dependent Claims (9, 10, 11, 12, 13, 14, 15)
-
-
16. The method of claim 16, wherein the instructions for conducting the forensic investigation includes instructions for parsing the digital search warrant, and identifying and collecting the data from the target device.
-
17. The method of claim 17, wherein the instructions for conducting the forensic investigation includes instructions for blocking write commands directed to the target device.
-
18. A server for conducting forensic investigations by investigators on an investigations field, the server comprising:
-
a processor; and a memory, wherein the memory stores instructions that, when executed by the processor, cause the processor to; receive a digital search warrant including one or more search parameters for conducting a forensic investigation; notify a mobile device of the digital search warrant; receive a user command to download the digital search warrant in response to the notifying; and download the digital search warrant to the mobile device in response to the received user command, wherein the digital search warrant is configured to be electronically parsed by the mobile device for automatically identifying and collecting data from a target device in the investigations field during a forensic investigation, wherein the automatically identifying and collecting of the data from the target device is done without modifying a state of the target device. - View Dependent Claims (19, 20, 21, 22, 23)
-
Specification