From the course: CompTIA CySA+ (CS0-002) Cert Prep: 6 Incident Response
Unlock the full course today
Join today to access over 22,600 courses taught by industry experts or purchase this course individually.
Evidence types
From the course: CompTIA CySA+ (CS0-002) Cert Prep: 6 Incident Response
Evidence types
- When preparing evidence that may be used in legal proceedings, cybersecurity experts must understand the type of evidence collected and how it may be used. There are three main types of evidence: real evidence, documentary evidence, and testimonial evidence. Real evidence consists of tangible objects that may be brought into a courtroom and examined by all the parties involved. When a television attorney waves a bloody knife in front of the jury, the attorney is displaying real evidence for the jury's consideration. In the case of digital crimes, real evidence may consist of actual computer equipment. Documentary evidence includes information brought into court in written or digital form. Documentary evidence may be used to help demonstrate facts to the court. Documentary evidence may include traditional documents, such as a contract that's under dispute, or it may include digital evidence, such as computer logs. There…
Contents
-
-
-
-
-
-
(Locked)
Conducting investigations5m 7s
-
(Locked)
Evidence types3m 51s
-
(Locked)
Introduction to forensics4m 6s
-
(Locked)
System and file forensics4m 17s
-
(Locked)
File carving3m 1s
-
(Locked)
Creating forensic images5m 36s
-
Digital forensics toolkit3m 13s
-
(Locked)
Operating system analysis6m 25s
-
Password forensics8m 9s
-
(Locked)
Network forensics4m 50s
-
(Locked)
Software forensics3m 32s
-
(Locked)
Mobile device forensics1m 32s
-
(Locked)
Embedded device forensics2m 50s
-
(Locked)
Chain of custody2m 13s
-
(Locked)
Ediscovery and evidence production3m 15s
-
(Locked)
-