Valid 712-50 Dumps shared by EduDump.com for Helping Passing 712-50 Exam! EduDump.com now offer the newest 712-50 exam dumps, the EduDump.com 712-50 exam questions have been updated and answers have been corrected get the newest EduDump.com 712-50 dumps with Test Engine here:
When performing a forensic investigation, what are the two MOST common data sources for obtaining evidence from a computer and mobile devices?
Correct Answer: D
Reference: https://study.com/academy/lesson/data-storage-formats-digital-forensics-devices-types.html Types of Data in Forensic Investigations: Persistent Data: Stored on hard drives, such as files, logs, and browser history. Volatile Data: Stored in RAM, includes running processes, active network connections, and encryption keys. Relevance to Forensic Investigations: Persistent and volatile data provide critical evidence during investigations, covering both historical and live system activity. Why Not Other Options: A & B: RAM and unallocated space are useful but do not encompass the full spectrum of evidence. C: Slack space and browser cache are subsets of persistent data. Reference: Study.com on Data Sources in Forensics