AccessData User Summit 2016 April 5 th – 7 th, 2016 Lake Mary, FL iOS 9 and Android 6.

Slides:



Advertisements
Similar presentations
Support.ebsco.com The Nursing Reference Center iPhone Application Tutorial.
Advertisements

Module: 201 Create and Manage Your Agent Account.
Mobile Applications and Time Management Deanna Arbuckle, MRC, CRC University of Dayton
TECHTIPS Presented by Craig Pike. Agenda  Microsoft Office 365  Snipping Tool  Device Picks  Windows Laptops  Google Chromebooks  Tablets  Phones.
Music, Audiobooks, Movies & Television. Question: What is Hoopla? Hoopla is a digital media service that allows you to borrow movies, television shows,
HNA-Drive Familiarization Presentation. From the address bar in your preferred internet browser, navigate to Site supports: Internet.
How the heck do they know that? The state of Computer and Cell Phone Forensics Ralph Gorgal, G-C Partners, LLC David Cowen, G-C Partners, LLC Ralph Gorgal,
ENCRYPTION Coffee Hour for August HISTORY OF ENCRYPTION Scytale Ciphers – paper wrapped around rod, receiver needed same size rod to get the message.
Android Security What is out there? Waqar Aziz. Android Market Share - I 2.
Confidential [Offline] Regular Demo installation SOP for ME371MG.
Confidential [Offline] Regular Demo installation SOP for ME172V.
Introduction to Skype A. Name -. Applies to Skype for home and small business accounts.
MPE+ Access Data Evasi0n iPhone 4s/5 Nexus 4 Market Share Information.
© by Pearson Education, Inc. All Rights Reserved. 1 Introduction to Android From “Android: How to Program” By Paul Deitel and Harvey Deitel.
Smartphones Adrián Preciado. Smartphones Index 1.iPhone OS 1.1Pros 1.2Cons 1.3Different iPhones 1.4 App Store 2.Android 2.1Pros 2.2Cons 2.3 Some phones.
IPADS: GETTING STARTED The basics.. Appleid – What is it and what does it do?  Your appleid is your username for your apple products. It allows you to.
Apple IPhone Information By: Mac Roy and Harley Parenteau and Tristan Fowler.
NOTE: To change the image on this slide, select the picture and delete it. Then click the Pictures icon in the placeholder to insert your own image. iOS.
Confidential [Offline] Regular Demo installation SOP for ME301T.
Hacked, rooted and jailbroken – different approaches to accessibility Bruce Darby Technology Advisor University of Edinburgh.
Forensic Aspect of Remote Wiping in Android Presented by: Ming Di Leom Supervisor: Dr. Kim-Kwang Raymond Choo.
Explain the purpose of an operating system
Office 365 Roadmap September 2015
1 Android- Platform Overview. 2 What is Android? Android is a software stack for mobile devices that includes an operating system, middleware and key.
Android in Teaching Beginning Course. Workshop Agenda General Android Tablet Information Basic Tablet Functions Connectivity Wi-Fi Bluetooth & Bluetooth.
Student iPad Configurations
© by Pearson Education, Inc. All Rights Reserved. 1 Introduction to Android From “Android: How to Program” By Paul Deitel and Harvey Deitel.
Presentation on android based application
1 Using Instagram to Enhance Teaching and Learning By Mrs. Sunnie Jackson-Grimes.
Tips and Tricks. What is Lotus Traveler? Lotus Traveler is a mobile app that connects on the go users to their City of Phoenix Lotus Notes What it does.
Introduction to Android
Convenience product security Collin Busch. What is a convenience product? A convenience product is a device or application that makes your life easier.
Internet Safety and Productivity Tips Presented by ITS Kerri Sorenson and Sean Hernandez December 11, 8:30-9:00 am.
ParentVUE AN OVERVIEW. What is ParentVUE? Provides parents near real-time access to information on assignments and grades, attendance, class schedules,
PAYware Mobile Android Comparison June 2013 For Internal Use Only.
0Copyright 2014 FUJITSU New Zealand Limited FUJITSU CONFIDENTIAL UNLESS SPECIFIED OTHERWISE Microsoft CRM Tablet App for Dynamics CRM 2013 Travis Chen.
Software. Computing History Milestones 1946 first large-scale electronic computer 1951 one of the first commercial computers 1963Computer mouse developed.
ITS Lunch & Learn November 13, What is Office 365? Office 365 is Microsoft’s software as a service offering. It includes hosted and calendaring.
AccessData User Summit 2016 April 5 th – 7 th, 2016 Lake Mary, FL The Pros and Cons of JTAG and Chip Off Extractions.
Android Development For Beginners. What is Android? Android is an open mobile phone platform that was developed by Google and later by Open Handset Alliance.
By Collin Donaldson.   In conventional OS architectures, the user accesses the OS via an account that has certain privileges (admin, guest). They can.
Android. I. What’s Android Android is a mobile operating system (OS) based on the Linux kernel and currently developed by Google. Android is designed.
DO NOW Working on the Cloud Do you have a lot of files on your computer but don’t have the space to store them? Do you worry about losing files? Do you.
By: Dylan Small.  History of Android  Android Versions  Technical Specs  New/Current Versions  Future of Android  Summary Road Map.
By: Collin Molnar. Overview  Intro to Android  Security basics  Android architecture  Application isolation  Application permissions  Physical access.
How to Use an Android Tablet Well Come To You few Steps For How to Use an Android Tablet?
Transfer Contacts from iPhone to Android From:
Sync Music/Video/Picture/Contacts from iCloud to iPhone/iPad/iPod All rights reserved—
How to Enable Account Key Sign Instead Of Password In Yahoo? For more details:
DISCOVERING COMPUTERS 2018 Digital Technology, Data, and Devices
Mobile Operating Systems
File Management in the Cloud
Rooting Android Created By : Mayank Talwar.
Tutorial Using the App help.ebsco.com.
How to Install Aptoide Apk on Android
Gmail is a free webmail service, developed by Google. Gmail also supports advertising. Users can access Gmail on the desktop, laptop or through the mobile.
Operating System.
EBSCO eBooks.
New Technology Group Meeting
AirPrint Setup How to set up airprint on hp printer.
CIS 470 Mobile App Development
Gmail Settings
Software.
Google Hangouts Google Hangouts is a instant messaging service. Hangouts supports text, voice and video conversations, and is cross-platform on the.
Tutorial Using the App help.ebsco.com.
Benefits and Wellness – MDLIVE
Software.
Managing and Monitoring Screen Time
Chapter 10 Mobile, Linux, and OS X Operating Systems
Presentation transcript:

AccessData User Summit 2016 April 5 th – 7 th, 2016 Lake Mary, FL iOS 9 and Android 6

Starting with iOS 9… 2 Release Date: September 16, 2015 Current Version: Adoption: 79% Compatible Devices: iPhone 4s -> iPhone 6s Plus iPhone SE iPad 2 –> 4 Gen, iPad Air, iPad mini, iPad Pro iPod Touch 5 th and 6 th Generation

Some New Features (forensics…) 3 Starting with security…  New 6 digit PIN default on devices with Touch ID. Takes the possible combos from 10,000 to 1,000,000. Small increase!  iCloud 2-Factor authentication.  iCloud Keychain  Password/CC# syncing for approved devices  Apple claims “they can’t access”

….on the topic of security, iMessage 4 Ummm..iMessage is not new in iOS9… (iOS5) But… lets talk about the security of iMessage in iOS9. No wiretaps… …or… #NSA?

Some New Features (forensics…) 5 Notes:  When creating a note choose your location!  iCloud  Gmail (if using gmail account as Apple ID)  On the Device (Stored in SQLite)  Stored: var/library/containers/shared/app group/~GUID~/notestore.sqlite  Can embed images within the Notes  Stored: var/library/containers/shared/app group/~GUID~/media

Database Changes 6 New/MORE! Information tracked with Applications. Let’s take a look at sms.db. sms.db messages table 9.3 on the right (51 columns) couldn’t fit them all on my screen sms.db 7.1 messages table on the left (38 columns) Honorable Mention: Spotlight search got a buff as well… but that leads to…

Jailbreaking…  7 Jailbreaking has become harder and harder and the wait longer and longer. Last Stable Jailbreak: iOS 9.1  What is sitting in your Evidence Room? What are we missing? Spotlight Database Location Information Applications not in the backup service Why the slow down in Jailbreak? Increased Apple security/patching schedule Jailbreakers: Quitting/->Android/Hired “Some of the hackers have probably gone underground as they find it a lot more lucruitive to sell the vulnerabilities to government agencies and security firms, for as much as $500,000.” – iphonehacks.com

Android 6 8 …soooo…. How often am I going to see this? Well…not much. 4.6% of the time. VersionNameDistribution 2.2Froyo.1% Gingerbread2.6% xHoneycomb (tablets) – 4.0.4Ice Cream Sandwich2.2% 4.1 – 4.3Jelly Bean21.3% 4.4Kitkat – 5.1Lollipop Marshmallo4.6%

What’s new in Security? 9 “For device implementations supporting full-disk encryption and with AES crypto performance above 50MiBsec, the full disk encrpytion MUST be enabled by default at the time the user has completed the out of box setup experience.” Required Partitions :  Userdata  Sdcard (emulated only) Does not apply to:  Devices updated to 6.0  Devices without lockscreens  …cheap phones…

More Security… 10 Bootloader may still be unlocked… but a warning will be displayed upon each boot which notifies the user the bootloader is not locked. “not secure”. Micro Permissions: No longer an all or nothing system Can change permissions after installation Unlock Options: …a bunch… -> THE PICTURE -> Lock Delays: Power Button decisions Auto Lock (Immediate -> 30 min)

Forensic Aspects… 11  Two (2) SMS messaging applications  Messenger (com.google.android.apps.messaging)  Hangouts (duplicates SMS) (com.google.android.talk)  Two (2) applications  Gmail (com.google.android.gm)  Inbox (com.google.android.apps.inbox)  Three (3) ways to access the Internet  Google app (com.google.android.googlequicksearch box)  Google Now launcher (com.google.android.launcher)  Google Chrome (com.android.chrome)

Rooting 12 Rooting is still possible… with considerations Locked bootloader is the compromise What happens when you unlock the bootloader? Hurts forensically… Lots of consumer support, you might get lucky! What are we missing? Full file extraction… …means no databases,.json, or other containers. Limited to app injection… JTAG, direct eMMC, and Chip Off still fall victim to encryption…