Difference between pages "Bibliography" and "BlackBerry"

From ForensicsWiki
(Difference between pages)
Jump to: navigation, search
m (Important Forensics Papers)
 
(Overview)
 
Line 1: Line 1:
=Disk Disposal and Data Recovery=
+
[[Image:Colour_blackberry_above.JPG]]
[http://http://www.actionfront.com/ts_whitepaper.asp|Drive-Independent Data Recovery: The Current State-of-the-Art], ActionFront Data Recovery Labs, August 2005.
+
  
[[Recovering Overwritten Data#The Gutmann Paper| Secure Deletion of Data from Magnetic and Solid-State Memory]], Peter Gutmann, Proceedings of the Sixth Usenix Security Symposium, 1996. [http://www.cs.auckland.ac.nz/~pgut001/pubs/secure_del.html]
+
=Overview=
  
[http://www-03.ibm.com/financing/pdf/us/recovery/igf4-a032.pdf Hard Drive Disposal: The Overlooked Confidentiality Exposure], FInancial Perspectives, IBM White Paper, November 2003.
+
The Blackberry is a personal wireless handheld device that supports e-mail, mobile phone capabilities, text messaging, web browsing, and other wireless information services.  Most commonly utilized for business purposes.
 +
Company website can be located at http://www.blackberry.com/
  
=Evidence Gathering=
+
==History==
  
[http://utdallas.edu/~sxs018540/index/docs/byteprints_itcc05.pdf Byteprints: A Tool to Gather Digital Evidence], Sriranjani Sitaraman, Srinivasan Krishnamurthy and S. Venkatesan, Proceedings of the International Conference on Information Technology (ITCC 2005), Las Vegas, Nevada, USA, April 4 - 6, 2005
+
The Blackberry was first introduced in 1999 by a company called Research in Motion (RIM).
  
=Other Papers=
+
=Operating System=
Kulesh Shanmugasundaram and Nasir Memon, Automatic Reassembly of Document Fragments via Context Based Statistical Models, http://citeseer.ist.psu.edu/shanmugasundaram03automatic.html
+
 
 +
The Blackberry OS provides easy access to applications such as email, to do list, memos, address book, and many other features. With the newer operating systems 4.1 and later, composing messages are much more convenient by providing auto text.
 +
 
 +
=Models=
 +
 
 +
* 7100 Series
 +
* 7700 Series
 +
* 7520
 +
* 7700 Series
 +
* 8700 Series
 +
 
 +
=Forensics=
 +
 
 +
RIM's push technology adds a new and different look at the forensics investigation of a PDA. Unlike traditional PDA's that need to be synchronized with a host computer with the use of a cradle or docking station, Blackberry's are synchronized wirelessly by the pushing of data onto the device. This means that the data on the device could potentially be changing at any moment. Also, a blackberry is never really off. What seems like “off” to the user is really only the display, keyboard, and radio being disabled. So when the device is powered back on to the user, items that have been waiting to be pushed to the device from the server begin immediately. This does not give the forensics examiner the time needed to shut down the device. For this reason, the first step in the acquisition of a Blackberry is to leave it off. The device should only be turned back on when it is in a place that cannot receive a signal and thus nothing can be pushed to it.
 +
 
 +
 
 +
 
 +
== References ==
 +
 
 +
* [http://www.oreillynet.com/pub/a/wireless/2005/09/15/what-is-blackberry.html "What is a Blackberry?"]
 +
* [http://www.discoverblackberry.com/ Discover Blackberry]
 +
* [http://www.rh-law.com/ediscovery/Blackberry.pdf Forensic Examination of a RIM (BlackBerry) Wireless Device]
 +
* [http://www.paraben-forensics.com/catalog/product_info.php?cPath=26&products_id=173&osCsid=cf1086f4531222932094533fe4420d74 Wireless Stronghold Bag ]
 +
* http://www.pdastreet.com/articles/2006/3/2006-3-7-Tip-BlackBerry-OS3.html

Revision as of 12:18, 24 April 2006

File:Colour blackberry above.JPG

Overview

The Blackberry is a personal wireless handheld device that supports e-mail, mobile phone capabilities, text messaging, web browsing, and other wireless information services. Most commonly utilized for business purposes. Company website can be located at http://www.blackberry.com/

History

The Blackberry was first introduced in 1999 by a company called Research in Motion (RIM).

Operating System

The Blackberry OS provides easy access to applications such as email, to do list, memos, address book, and many other features. With the newer operating systems 4.1 and later, composing messages are much more convenient by providing auto text.

Models

  • 7100 Series
  • 7700 Series
  • 7520
  • 7700 Series
  • 8700 Series

Forensics

RIM's push technology adds a new and different look at the forensics investigation of a PDA. Unlike traditional PDA's that need to be synchronized with a host computer with the use of a cradle or docking station, Blackberry's are synchronized wirelessly by the pushing of data onto the device. This means that the data on the device could potentially be changing at any moment. Also, a blackberry is never really off. What seems like “off” to the user is really only the display, keyboard, and radio being disabled. So when the device is powered back on to the user, items that have been waiting to be pushed to the device from the server begin immediately. This does not give the forensics examiner the time needed to shut down the device. For this reason, the first step in the acquisition of a Blackberry is to leave it off. The device should only be turned back on when it is in a place that cannot receive a signal and thus nothing can be pushed to it.


References