Q-CERT banner

main navigation areas

Anatomy of a Crime Scene, Part Two

March 18, 2008

Continuing with our ongoing cyberforensics scenario, we present an overview of how to collect evidence from the scene of a cybercrime. This episode explains digital evidence and its fragility, Locard's Exchange Principle, and how law enforcement responds to digital evidence. It also shows the recommended processes for seizing evidence from computers, PDAs, mobile phones, CDs, DVDs, and flash memory devices.