Evidence Preservation
Even if no forensic analysis is necessary at the time of submission, we can forensically acquire digital devices to preserve the data for later use.
Since 2004, Flashback Data has provided sensitive incident investigation and forensic data recovery services to clients around the world, including corporations, law firms, law enforcement, and foreign governments. Our forensic services include computer forensics, mobile forensics, JTAG and chip-off forensics.
Our laboratory is ISO/IEC 17025:2017 compliant and accredited by the ANSI National Accreditation Board (ANAB).
While accreditation of crime laboratories is required in Texas, certification of individual Forensic Scientists is not currently required. However, voluntary certification is available to the forensic scientist and is recognized as an additional measure of quality assurance and credentialing.
During the 84th Legislative Session in 2015, the Texas Legislature passed SB-1287, which requires all forensic analysts to be licensed beginning January 1, 2019.
Since 2004, Flashback Data has provided sensitive incident investigation and forensic data recovery services to clients around the world, including corporations, law firms, and foreign governments.
Our laboratory is ISO/IEC 17025:2017 compliant and accredited by the ANSI National Accreditation Board (ANAB).
ANAB Symbol Black 17025 Forensic Testing Lab
Certificate: | FT-0257 |
Field of Accreditation: | Forensic Testing |
Discipline: | Digital Evidence |
Our personnel have backgrounds in law, criminal investigation, intelligence, fraud examination, and information systems and security. Our forensic examiners are well-trained and highly credentialed.
Additional certificates:
Certified Computer Examiner (CCE), Certified Fraud Examiner (CFE thru ACFE), Seized Computer Evidence Recovery Specialist (SCERS thru FLETC)
Digital forensics is a branch of forensic science encompassing the recovery and investigation of material found in digital devices, often in relation to computer crime. The term digital forensics was originally used as a synonym for computer forensics but has expanded to cover investigation of all devices capable of storing digital data.
We can investigate anything that can store data. Computers, flash cards, mobiles phones. You name it? We have even validated automobile GPS units in the field.
We collect activity on computers and equipment and take it to our laboratory to examine the evidence. Our analysts will then begin to retrieve and analyze data. To prevent cross-contamination, the original data must be stored on another media form. After examining the device, we choose the correct extraction method to view the computer’s contents and find evidence to help with the investigation.
We provide forensic services for many mobile devices, such as iPhones, Androids, and Blackberrys. Devices are first collected and turned off. The batteries are also removed if possible. This prevents data alteration. Phones and other mobile devices are then investigated through data analysis and detailed note-taking that will build a story.
Flashback Data has developed techniques that are compatible with Joint Test Action Group (JTAG) pins on specific devices. Most mobile phones have JTAG pins. We use these pins to give us direct access to the flash memory on a device and allow for full memory recovery. If JTAG does not work, we can also try the chip-off recovery method.
This option is more invasive, but is a successful method of recovering difficult or very damaged devices. This method involves going through the flash memory itself. We use our tools and techniques to remove the flash memory chip and reconstruct data on mobile devices to create evidence that helps with investigations.
Flashback Data performs investigations on many types of cases. Civil and Criminal. We have worked with Attorneys on corporate IP Theft cases, family law matters, hacking incidents and more. We also assist Law Enforcement with criminal cases.
We have experts with experience in technology, intelligence, and law enforcement. With our background in these departments, we can arrange expert witness testimonies to accompany the data recovery and evidence we find. We are also skilled at creating affidavits and reports.
When normal forensic tools cannot retrieve data, we have a full-service data recovery lab that can perform data recovery on damaged or challenging devices. We have the ability to do these recoveries without sending the device to another location and breaking chain-of-custody. This works on crashed hard drives, broken mobile phones, damaged memory sticks, nonworking servers, and backup legacy tapes.
At Flashback Data, we use techniques that are write-protected and are verifiable with complex hash algorithms. We also enforce strict chain-of-custody protocol to ensure all evidence is accountable. Devices that we can perform data recovery on include email servers, desktop computers, laptops, mobile devices, backup devices, and network shares. Our facility can accommodate any size request.
This is exactly what makes Flashback Data unique. We have a full fledged Data Recovery lab on site to assist with any issues with inaccessible devices. This is especially helpful in cases where someone intentionally damaged a device.