Digital Forensics: Cyber Crime Investigation
Response to on-line Fraud and Internet Crime
High-Tech Bridge offers Digital Forensics expert service to eliminate the negative consequences and investigate cyber crime and fraud incidents.
The most popular investigated cases in our practice are:
External Incidents
- Compromised systems, applications, servers and network devices
- Machines infected by viruses, Trojan horses and rootkits
- Denial of Service attacks against corporate infrastructure
- Phishing and social engineering attacks against corporate users
- Fake or confidential information spreading in the Internet
- Blackmailing
Internal Incidents
- Confidential information leakage and other insider’s activities
- Privilege escalation, unauthorized access to sensitive information
- Information and date destruction or other damage to corporate resources
Counterfeiting Incidents
- Industrial and commercial espionage
- Fake corporate products on-line trading
- Trademarks, licenses and copyrights on-line abuse
Each security incident requires a detailed and fast investigation in order to minimize losses, find the guilty ones and prepare all the necessary materials for the law enforcement agencies. Investigations can also help to prevent such cases in future.
The investigative process starts after the incident recovery phase with a damage assessment of the hacker’s attack or insider’s activities. After that our experts will start a log analysis or log recovery process if logs were deleted by intruders.
As the complete schema of the incident is made and the source of the attack can be identified, then all the information obtained during the investigation process can be transmitted to law enforcement agencies to begin a legal process.
Hackers quite often perform their attacks through several previously compromised systems in order to hide the real source of attack. In this case our experts will start a step-by-step investigation, in cooperation with international law enforcement agencies to follow the criminal chain, restore the logs and find the real attacker.
Incident Forensics by Steps and Participants




