Respuesta :

During Digital Forensic analysis phase you can find the information in all of the above options i.e. deleted files, slack space, post it, etc.

Hidden data can be discovered in a variety of locations during the digital forensic examination phase, including:

Unallocated space on a hard disk is the area that was once utilized to store data but has since been cleared off. Using specialist forensic tools, data can be recovered from this area.

The unused space on a hard disk that is not a part of any file or directory is known as slack space. Using forensic technologies, data can be recovered from this area.

Alternative data streams: It is possible to store data in a file in some operating systems in a fashion that is not apparent to the user. It is possible to recover this data using forensic techniques.

Files that have been encrypted cannot be opened or read without the proper decryption key. To try to decrypt the file, forensic analysts might either try to retrieve the key or utilize brute force methods.

Devices with hidden partitions: These partitions are not visible to the user on some devices. These partitions can be located and examined using forensic tools.

Deleted records: Records from databases and other sources of structured data can be recovered using forensic technologies.

It is significant to highlight that forensic analysis involves specific knowledge and equipment in order to uncover buried information. It is not something that a layperson could perform with ease.

To know more about Digital Forensic analysis kindly visit
https://brainly.com/question/28296347

#SPJ4