Network Forensics Acquisition

Here is Alessandro Guarino’s step by step guide for the acquisition of potential digital evidence online.

Alessandro notes, that online acquisition of web pages and other content is a problematic part of digital forensics, especially given the need to preserve integrity and the volatility of online content. He starts from general principles and than discribes the procedure, which, according to the author, consists of six steps:

  1. Start video recording
  2. Environment validation
  3. Start traffic recording
  4. Acquisition
  5. Conclusion
  6. Analysis
