← All services
Specialist digital evidence service

Computer Forensics

Forensic examination of Windows, macOS, storage media and related digital evidence.

What the service can include

  • Forensic imaging and hash verification
  • Deleted files, browser history and system artefacts
  • Email, document and user-activity analysis
  • External media and cloud-sync artefacts
  • Timeline reconstruction and expert reporting

Evidence-led methodology

Work is scoped to the instruction and available evidence. Relevant material is preserved, documented and examined using repeatable methods. Findings distinguish observed facts, technical interpretation, limitations and matters requiring further corroboration.

Typical deliverables

Depending on scope, deliverables may include acquisition records, hash schedules, examination notes, timelines, extracted exhibits, expert reports, affidavits and consultation or testimony.

Need assistance?

Discuss the evidence before it is altered.

Contact Lotie or Mias