skip navigation

CrimeSolutions.gov

Add your conference to our Justice Events calendar

PUBLICATIONS

NCJRS Abstract

The document referenced below is part of the NCJRS Library collection.
To conduct further searches of the collection, visit the NCJRS Abstracts Database.

How to Obtain Documents
 
NCJ Number: NCJ 239587     Find in a Library
Title: US-LATT Version 1.60 Evaluation Report
Corporate Author: NIJ Criminal Justice Electronic Crime Technology Ctr of Excellence
United States of America
Date Published: 06/2012
Page Count: 19
Sale Source: National Law Enforcement and Corrections Technology Center (NLECTC)
700 N. Frederick Ave.
Bldg. 181, Room 1L30
Gaithersburg, MD 20879
United States of America
Document: PDF 
Type: Test/Measurement
Language: English
Country: United States of America
Annotation: This report presents the results of an evaluation of a forensic tool designed to capture data that might be lost from a running computer when the power cord to the computer is pulled at the time it is physically seized by authorities.
Abstract: This report was prepared by the National Institute of Justice Electronic Crime Technology Center of Excellence and presents the results of an evaluation of new forensic tool for use in the seizure of computers. This tool, the USB Live Acquisition and Triage Tool (US-LATT), is designed to capture data on a running computer that could be lost if the power source to the computer is pulled at the time the computer is seized by authorities. Information is presented in this report on what US-LATT is, the functions it performs, and how it can be used. US-LATT is a forensic tool with two components – a hardware component and a system-analysis component, that is used for conducting live investigation and triage of computer data and computers that may be compromised as a result of power disruptions when the computers are seized by authorities. This report includes information on system requirements for using US-LATT, target system requirements and suggestions, and US-LATT configuration applications. Additional information is included on which computer platforms were used for test-bed configurations in this evaluation. The final section of the report contains the results of the evaluation of the tool on three different computers: a shop-built computer, a Dell laptop, and a Samsung laptop. The evaluation of US-LATT indicates that it is a powerful tool for use by investigators who wish to gain access to computer files and data that would not have been available if the computer had been simply shut down at the time of seizure. Tables, figures
Main Term(s): Forensic engineering
Index Term(s): Evidence collection ; Computer Terminals ; Search and seizure ; Evidence preservation ; Computer hardware systems ; Computer software ; Computer abuse ; Computer crime prevention measures ; Forensics/Forensic Sciences ; Computer crime investigative Training ; Computer evidence
   
  To cite this abstract, use the following link:
https://www.ncjrs.gov/App/Publications/abstract.aspx?ID=261653

* A link to the full-text document is provided whenever possible. For documents not available online, a link to the publisher's web site is provided.