Advanced Mobile Forensics

Recommended as a follow-up to Android Forensics, this course dives deeper into the physical method of extracting data from Android and also adds webOS. Students learn techniques associated with obtaining a physical image, using actual devices in the hands-on labs.

The course also delivers practical information about data recovery, including the important storage structure SQLite. Students are led in real analysis of a .db3 database extracted from a mobile device.

Topics include:

  • Fundamentals of using recovery exploits in mobile device forensics
  • Understanding Communication Protocols
  • Flashing Devices for Physical Imaging
  • Understanding modifications made to the device memory during the flashing process
  • Passcode circumvention methods
  • Android imaging and analysis
  • WebOS imaging and analysis
  • JTAG overview
  • SQLite Advanced Forensics

Upcoming Training Workshops