From the course: CompTIA Security+ (SY0-601) Cert Prep: 9 Operations and Incident Response
Unlock the full course today
Join today to access over 22,500 courses taught by industry experts or purchase this course individually.
Evidence types
From the course: CompTIA Security+ (SY0-601) Cert Prep: 9 Operations and Incident Response
Evidence types
- [Narrator] When preparing evidence that may be used in legal proceedings, cyber security experts must understand the types of evidence collected and how it may be used to be admissible in court. There are three main types of evidence; real evidence, documentary evidence, and testimonial evidence. Real evidence consists of tangible objects that may be brought into a courtroom and examined by all parties involved. When a television attorney waives a bloody knife in front of the jury, the attorney is displaying real evidence for the jury's consideration. In the case of digital crimes, real evidence may consist of actual computer equipment. Documentary evidence includes information brought into court in written or digital form. Documentary evidence may be used to help demonstrate facts to the jury or court. This evidence may include traditional documents such as a contract under dispute, or it may include digital evidence…
Contents
-
-
-
-
-
-
Conducting investigations3m 50s
-
Evidence types3m 28s
-
Introduction to forensics3m 21s
-
System and file forensics4m 26s
-
File carving3m 46s
-
Creating forensic images5m 30s
-
Digital forensics toolkit2m 25s
-
Operating system analysis6m 9s
-
Password forensics7m 16s
-
Network forensics4m 1s
-
Software forensics4m 25s
-
Mobile device forensics1m 10s
-
Embedded device forensics2m 30s
-
Chain of custody1m 50s
-
Ediscovery and evidence production3m 3s
-
Exploitation frameworks6m 4s
-
-