Android Forensics Tool - Cybernate

Summary

Cybernate is my best effort to attempt to uplift Sri Lankan Android Forensics technology to a certain level where an accurate and comprehensive investigation could be accomplished with ease and efficiency. All this research thesis and endeavors is focused upon developing a Prototype of an All-in-One tool solution which utilizes the existing the digital forensics practices, open-source tools, and applications, so that this solution could be implemented in Law enforcement and if obligatory, even for civilian regular purposes. The Forensics Procedure comprising of Identification, Preservation, Analysis, Documentation and Presentation (According to the EC Council) will be incorporated into my project. They have implemented into my project as various functions.

This prototype is able to extract the entire non-volatile/static memory of the target Android device, analyze this image for specific evidence generated through various social media Chatting and finally produce a comprehensive report of its analysis and discoveries. This memory file will be preserved so it will be available to be analyzed at any given time. A set of very distinct rules are implemented hereto extract and storeevidencein aprecise way so that thedata won’t becorrupted, deleted or be tampered with. As with other digital forensics investigations, integrity is our topmost priority during the complete process.

The final outcome of this prototype is a Command Line Interface (CLI). It was developed with the use of Python language through Visual Studio Code. The main connection between my tool and the Android device with the use ADB (Android Debug Bridge). The non-volatile image will be analyzed with the utilization of Regular Expression patterns specifically created for the Chatting Applications.

This solution was developed with all the necessary forensics standards in mind. Cybernate is a user friendly, effective, and low-cost system which could enhance the quality of life of any Law Enforcement official.

Project Scope and Objective

The Primary Objective of this project is to develop a free and open-source one tool solution to perform Android Forensics to extract and analyze an image of an Android device. The following is projected to be achieved after the completion of the project,
  • Data such as user details and app usage details from specific types of Chatting apps.
  • Contact lists and Call logs
  • Device and System Information
  • Battery Information
By performing the necessary research and offering my best efforts in completion of this project, I will not only be able to develop my skills in digital forensics but also be able handle such projects in the future. The depth and importance of this project will also let me have a greater possibility in getting a good job opportunity as well. As mentioned before, this Android Forensics tool is developed for better crime investigation in Sri Lanka by,
  • Being more convenient to gain evidence from a suspect’s android device.
  • Provide more informed rulings with the detailed reports provided by this solution.
  • Helps Digital Forensics officers in Sri Lanka get up to pace with the world.
  • More accessible and trustworthy than existing commercial solutions.
  • The Solution is Open-Source and Free to be used by the Law Enforcement.

Interested? Let’s Chat.

Got an opportunity, idea, or just want to connect? 

I’m always open to collaborations and conversations – feel free to reach out.