A guide to the forensic acquisition and analysis of iPhone and iOS devices, and practical advice on how to secure iOS devices, data and apps.
Acknowledgments Preface Website About the Authors About the Technical Editor Chapter 1. Overview Publisher Summary Chapter points: Introduction Summary References Chapter 2. Device features and functions Publisher Summary Chapter points: Introduction Summary References Chapter 3. File system and data storage Publisher Summary Information in this chapter: Introduction Summary References Chapter 4. iPhone and iPad data security Publisher Summary Chapter points: Introduction Summary References Chapter 5. Acquisitions Publisher Summary Information in this chapter: Introduction Summary References Chapter 6. Data and application analysis Publisher Summary Chapter points: Introduction Summary References Chapter 7. Commercial tool testing Publisher Summary Chapter points: Introduction Summary Reference Appendix A. iTunes backup location Appendix B. Tools to analyze common file and data types Appendix C. iPhone file system Index
Andrew Hoog is a computer scientist, certified forensic analyst (GCFA and CCE), computer and mobile forensics researcher, former adjunct professor (assembly language) and owner of viaForensics, an innovative computer and mobile forensic firm. He divides his energies between investigations, research and training about the computer and mobile forensic discipline. He writes computer/mobile forensic how-to guides, is interviewed on radio programs and lectures and trains both corporations and law enforcement agencies. As the foremost expert in Android Forensics, he leads expert level training courses, speaks frequently at conferences and is writing a book on Android forensics. Katie Strzempka is a Technology Consultant with viaForensics, a computer and mobile forensics firm. She performs forensic investigations, security audits and research, and has trained investigators around the world in mobile forensics. Katie is also a co-author for a white paper on iPhone Forensics, an analysis of the various iPhone Forensics commercial tools.Ms. Strzempka received her Master's degree from Purdue University in Cyber Forensics and has a B.S. in Computer and Information Technology. Prior to working for viaForensics, Katie worked for 3 years in Information Security for a Fortune 500 company, handling firewall administration and assisting with internal and external network connectivity.
"iPhone and iOS Forensics is a must read by all digital forensic examiners, even the most educated person in the iPhone environment will discover something new in this highly valuable book. The author has proven himself many times over to be a valuable resource to the digital community at large, and this book is the culmination of all of that work. I will not conduct another iOS analysis without using this book as my reference!" -Ryan R. Kubasiak, Investigator, Computer Crime Unit and Editor AppleExaminer.com "Covering iOS file system information, device application and security, acquisition and analysis methods, this book takes one from basic to advanced information and techniques related to the iOS family of devices. Andrew and Katie have put together a valuable resource for security professionals and forensic examiners alike." -Danny Garcia, DG Digital Services, LLC "This book is an excellent reference for examiners in the field, looking to understand the many different approaches to forensic imaging of an iPhone." -Jonathan Zdziarski, iPhone forensics expert