Fundamentals & Process
3 questions
Digital forensics uncovers evidence from electronic devices — recovering deleted files, examining traffic logs, analysing memory — and follows a defined 6-stage process to keep that evidence admissible.
Q1
Digital forensics is best defined as:
1 mark
Q2
What are the six stages of the digital forensics process, in order?
2 marks
Q3
"Preservation" in the forensics process is primarily about:
1 mark
Fundamentals & Process score
0/4
Types of Evidence & Tools
5 questions
Evidence comes in several forms — and each needs different tools. Memory is especially valuable because it captures the live state of a system, which disappears the moment power is lost.
Q4
Which of these are listed as the four types of digital evidence in the lecture? (select all)
2 marks
Q5
A memory dump (RAM capture) is especially valuable in forensics because it can reveal:
1 mark
Q6
Which tool is specifically named for memory analysis in the forensic tools list?
1 mark
Q7
Which tool is specifically named for network traffic analysis?
1 mark
Q8
File metadata such as timestamps, permissions, and deletion/recovery records fall under which evidence category?
1 mark
Types of Evidence & Tools score
0/6
CTF Forensic Techniques & Encodings
6 questions
Forensic-flavoured CTF challenges lean heavily on steganography (hiding data inside another file), encoding schemes, and files that are hidden but not encrypted.
Q9
Base64 encoding represents binary data using how many characters from the ASCII set?
1 mark
Q10
Hexadecimal ("hex") encoding is a base-____ number system.
1 mark
Q11
Which encoding scheme is named alongside Base64 and URL encoding as commonly appearing in CTF flag-decoding challenges?
1 mark
Q12
Which Linux command lists hidden files (those starting with a dot) in a directory?
1 mark
Q13
On Windows, which command-line option reveals hidden files in a directory listing?
1 mark
Q14
Which forensic technique involves hiding data inside an image, audio, or other file so it is not visible without special tools?
1 mark
CTF Forensic Techniques & Encodings score
0/6
Challenges & Emerging Trends
5 questions
Encryption and anti-forensic techniques make investigations harder; meanwhile cloud, IoT, and privacy regulation keep reshaping where and how evidence can even be gathered.
Q15
In the scenario about a suspect's encrypted smartphone, what is the core challenge posed by strong encryption?
1 mark
Q16
"Anti-forensic techniques" (file wiping, data overwriting, etc.) are used by perpetrators to:
1 mark
Q17
Which regulations are named as introducing challenges around data access/privacy during forensic investigations?
1 mark
Q18
"Cloud forensics" is concerned with:
1 mark
Q19
What real-world example does the lecture give for the relevance of "IoT forensics"?
1 mark
Challenges & Emerging Trends score
0/5
—
Complete all questions to see your final score