📢 Too many exams? Don’t know which one suits you best? Book Your Free Expert 👉 call Now!

  • google app store apple app store
  • âś–

      Question

      What is 'Digital Forensics' in

      cybersecurity?
      A The process of collecting, preserving, analyzing, and presenting digital evidence from computers and networks in a legally admissible manner to investigate cyber incidents Correct Answer Incorrect Answer
      B The use of digital signatures to authenticate legal documents so that no outsider can forge the documents Correct Answer Incorrect Answer
      C Automated scanning of systems for malware using forensic tools Correct Answer Incorrect Answer
      D Real-time monitoring of network traffic to detect intrusions and providing insights into the various threat countermeasures Correct Answer Incorrect Answer
      E The process of encrypting evidence to prevent tampering Correct Answer Incorrect Answer

      Solution

      Digital forensics follows strict chain-of-custody procedures:  i) Identification  ii) Preservation (forensic imaging — bit-for-bit copy)  iii) Analysis (recovering deleted files, examining logs, timeline analysis) iv) Documentation  v) Presentation in court.  Branches of digital forensics are network forensics, memory forensics, mobile forensics, cloud forensics etc. Banks must conduct forensic investigations after cyber incidents (fraud, data breaches) and preserve evidence for regulatory reporting to RBI/CERT-In and potential legal proceedings.

      Practice Next

      Relevant for Exams:

      ask-question