Preview Workflow

The CIM Courses system will be down temporarily undergoing routine maintenance.

Viewing: FORS 6270 : Digital Artifacts: Points of Evidence

Last approved: Sat, 21 May 2016 08:43:59 GMT

Last edit: Wed, 11 May 2016 15:42:53 GMT

Catalog Pages referencing this course
Columbian College of Arts and Sciences
Forensic Science (FORS)
FORS
6270
Digital Artifacts: Points of Evidence
Digital Artifacts
Summer 2016
3
Course Type
Lecture
Default Grading Method
Letter Grade

No
No

Corequisites

15

Frequency of Offering

Term(s) Offered

Are there Course Equivalents?
No
 
No
Fee Type


No


The inner workings of common activity on a computer system, the digital trail these activities leave, and how to recover, interpret, and present such artifacts forensically.
1) Understand common approaches to computer forensic investigations. 2) Identify the points of evidence associated with different computer systems and be able to recover forensic artifacts relevant to the crime being investigated. 3) Understand the need for forensic attribution and be able to identify and recover relevant digital artifacts to support such attribution. 4) Understand the different data storage mechanisms used by common Operating Systems to identify the location of known artifacts. 5) Integrate knowledge of file systems to learn the investigative significance of data attributes. 6) Create and execute an investigative plan on a computer system based on known facts.
Uploaded a Course Syllabus

Course Attribute


gharris (Sun, 06 Mar 2016 17:14:24 GMT): Rollback: Please provide an abbreviated course description of 1-2 lines covering only the main topics/themes of the course. See, e.g., FORS 6201 and FORS 6204.
Key: 10097