Back to Blog
Prodiscover forensics drawback6/28/2023 ![]() Thus, it really depends on what you want to do. ![]() Very fast and easy tool for analysis of user's browsing history or internet activities. ![]() No support for Bitlocker (the company I work for use this a lot). No option to create nice "Review Package" that you can forward to someone. Dongle must be attached all the times to start the software. (However, the default options are good enough for most of the cases). Too many options to choose, thus could be confusing. Technical in nature - not easy to learn for a beginner. Very frequent updates for new features. one doing "processing", the other doing live preview. For example, search for "xyz" only in Word documents. Filter by column 1 + filter in colum 2 etc. Very flexible and granular filtering options. Thus, you can select to process only certain things that you want to look at e.g. Very customizable evidence processing options. Evidence processing can be slow, especially when processing large PST files. Nice and user friendly "Review Package" that can be sent to Requestor for reviewing the evidence. Easy and free tool for acquisition (Encase Imager). Renown tool and accepted by court of laws. Here are my personal views of each tool's pros and cons: Most IT forensic professionals would say that there is no single tool that fit for everything. Over the past few months, I have had the chance to work more extensively with the following IT Forensic tools (at the same time):
0 Comments
Read More
Leave a Reply. |