Advanced iOS Forensics Training

Description

  • Duration: 3 days
  • Group size: up to 12 students
  • Instructors: experts in mobile forensics
  • Certification: provided
  • Included: 90-day access to full versions of all software tools used during the training
  • Extra benefits: the book “Mobile Forensics – Advanced Investigative Strategies” by Vladimir Katalov and Oleg Afonin

 

Reasons to attend the Advanced iOS Forensics Training 

In this 3-day course on iOS forensics, students are led through the fundamentals of mobile forensics including an overview of common mobile platforms and operating systems. They will learn about the most effective workflow including evidence preservation, logical, physical and cloud based acquisition. Students will learn how to cope with encryption and password protection and develop skills necessary to successfully obtain evidence from locked devices and password-protected backups. Attendees who successfully pass the class assignments will be given a certificate of completion.

 

The skills you get

The students will develop an in-depth knowledge of password protection and data encryption techniques used in mobile forensics. The attendees will further master modern technologies for mobile forensics, evidence preservation, data extraction and decryption. The students will master the data extraction workflow using logical, physical and cloud acquisition methods; develop jailbreaking skills and learn how to use a jailbreak for data extraction on different generations of iOS devices. The attendees will master cloud extraction, including the extraction of static backups and dynamic (synced) evidence.

 

Who completed this training

Among our certified trainees are police, law enforcement, security officers, computer security professionals, and penetration testers.

 

Program

 

Day 1

  • A brief overview of global mobile platforms
  • The mobile forensics workflow (steps and techniques)
  • Physical, logical and cloud acquisition methods compared

 

Day 2

  • Jailbreak-based physical acquisition (32-bit and 64-bit devices)
  • Authentication tokens and pairing records
  • Multi-platform data extraction

 

Day 3

  • Cloud-based over-the-air data acquisition
  • Handling two-factor authentication
  • Extracting IM communications and other app data.

Datasheets

Video



Categories


Partners: Elcomsoft


Available Training: Vendor Site – Instructor Led