Did you know that mobile devices are a main source of digital evidence in criminal investigations?  This shouldn’t be a surprise to anyone.  More than 90% of criminal cases today involve mobile devices as their main source of evidence. The largest challenge facing many digital forensic investigators are locked or inaccessible devices when they arrive for examination.   

Proper handling and documentation are key when it comes to maintaining and securing evidence. Here are some quick definite dos and don’ts when it comes to digital forensics best practices: 

DO obtain proper legal authority before accessing and collecting data from a seized device. 

DO keep the device powered on and take it off the network in order to mitigate risk and increase your chances of extracting critical evidence. 

DON’T alter the device.  If any steps are taken, such as device isolation, then document them.   

DON’T end your search when a mobile device is found. A wide array of additional devices could be part of the same ecosystem and may contain much-needed actionable intelligence. 

These are just a few of the many digital forensic best practices that should be followed when it comes to working with mobile devices. To learn more about putting some of these steps into practice, request a complimentary copy of our infographic and ebook below.

Learn more about Grayshift’s mobile forensics solutions, and contact us today to learn more!

David Smalley,
Digital Forensics Manager