You are here

Toward a new tool to extract the Evidence from a Memory Card of Mobile phones


Rob Witteman, Arjen Meijer, Nhien-An Le-Khac, Tahar Kechadi

Publication Type: 
Refereed Conference Meeting Proceeding
Today, a mobile phone is not just a “phone” but it is a computer that you can also use for calling someone. Besides, in criminal investigations the importance of evidence from the mobile phone is increasing as more and more phones are seized at the Digital Forensic Department of the police. Indeed, the amount of memory cards of these mobile phones that need to be investigated separately is also increasing. Possible reasons are that the mobile phone investigation software does not support the specific mobile phone or the specific, for that investigation, artefacts. Sometimes the software investigates just the internal memory of the mobile phone and not the data which is written on the memory card. Fact is also that although the mobile phone was investigated by the dedicated software, the possibility that the associated memory card contains additional important information is evident. The current procedure to get all of the usable information from a memory card of a mobile phone is very time-consuming process and not user friendly. In this paper, we present a new single tool to simplify the investigation of a memory card from a mobile phone. We also test our tool with WhatsApp application on different mobile phones.
Conference Name: 
IEEE International Symposium on Digital Forensics and Security (ISDFS 2016)
Digital Object Identifer (DOI):
Publication Date: 
Conference Location: 
United States of America
National University of Ireland, Dublin (UCD)
Open access repository: 
Publication document: