Evidence Talks

Evidence Talks is one of the UK’s leading authorities on forensic computing, servicing clients in the military, law enforcement, intelligence, corporate and legal communities. At the forefront of technical innovation in digital forensics and intelligence gathering, Evidence Talks has developed several unique proprietary products at its Milton Keynes R & D facility, including the three award-winning technologies, Remote Forensics, SPEKTOR Forensic Intelligence and Cascade Forensics. Using security cleared digital artists, ETL is able to conceive and produce Computer Generated Image (CGI) movies showing complex scenarios and concepts in a clever, artistic but effective manner. Clients for this services include Dell Inc and AccessData Corporation.


Founded on a reputation for excellence and reliability, Evidence Talks continue to establish strategic relationships with clients and, by clearly understanding business objectives, develop and deliver distinctive digital forensic services and unique products that meet specific operational needs.

Designed specifically for use by non-technical investigators, SPEKTOR is used by front line police and other enforcement officers around the world to rapidly preserve and automatically examine data stored on computers, servers and mass storage devices.

Our unique ultra fast collection technology means that SPEKTOR collects in minutes. It’s speed can be enhanced further with addon modules. SPEKTORS intuative analysis suite allows you to search, sort and analyse only the files you need to, potentially saving you hours. It is designed specifically for front line users. SPEKTOR’s interface is easy to navigate and the user is guided through each process. SPEKTOR uses accepted forensic techniques to preserve & protect original data while creating full forensic images or collecting targeted files.

SPEKTOR DRIVE

SPEKTOR DRIVE is available as a bootable USB stick or Mac expansion card that temporarily turns your PC or Apple Mac into a powerful, fully functional SPEKTOR Forensic Intelligence appliance.

Our unique ultra fast collection technology means that SPEKTOR collects in minutes. Deployed against LIVE or powered-off systems, SPEKTOR finds target data based on signatures and/or file extensions, recovers deleted files, collects volatile memory and comprehensive file information. Collect targeted data or conduct a full forensic image from removable media such as hard disk drives, usb sticks and memory cards. SPEKTOR fully supports collections from Windows, Apple or Linux based machines. SPEKTOR uses standard & accepted forensic techniques to preserve & protect original data while creating full forensic images or collecting targeted files. SPEKTOR captures details about every file on a system and calculates MD5 and SHA1 hashes for all collected data. SPEKTOR uses standard removable USB devices as ‘Collectors’ so you can process as many targets as you like simultaneously. Couple this with an easy to use 6 step wizard and you’ve got the ultimate digital triage, forensic imaging and automated analysis solution in one box.

SPEKTOR KIOSK

Easy to use, enabling frontline, non-forensic investigative users to perform a fast and forensically sound capture and review of data from digital devices, including computers and external storage media.

High performance computing platform allows you to review results within moments. Flags priority content but ignores unwanted content. Kiosk allows for different user levels from basic through to administrator. Full SPEKTOR capability is available for all authorised users. Designed for use by non-technical operators supported by straightforward online training. Administrative users can configure roles, workflow and search criteria. Less training is needed and Kiosk is priced between existing SPEKTOR family options. Kiosk is also compatible with existing SPEKTOR peripherals.

SPEKTOR ULTRA

Increase operational velocity on fast moving missions. Acquire and analyse more in less time with SPEKTOR Rapid Imager and automated forensic analysis.

  • PORTABLE
    Whisper silent, lightweight (1.3kg) and rugged. MIL-STD-810G, IEC60529, IP65. With hot-swap batteries and low light option.
  • RAPID
    Simultaneous imaging of multiple removable media devices & computers via USB, SATA and USB-C.
  • ANALYSIS
    Incorporates the powerful and automatic SPEKTOR Forensic Analysis software for immediate intelligence.
  • EASY TO USE
    SPEKTOR is designed specifically for front line users. SPEKTOR’s interface is easy to navigate and the user is guided through each process.

SPEKTOR RAPID IMAGER

SPEKTOR Rapid Imager combines the power and simplicity of SPEKTOR Triage Technologies with the speed of Evimetry from Shatz Forensics to deliver unparalleled forensic image speed in a triage tool.

Whether in the field or in the lab, SPEKTOR Rapid Imager can shave hours off the time taken by traditional forensic imaging solutions. For maximum flexibility and minimum time on target, use SPEKTOR Rapid Imager to acquire allocated only, unallocated only or full linear images. SPEKTOR Rapid Imager produces forensically peer reviewed AFF4 image files which include full hash verification and validation. Images created with SPEKTOR Rapid Imager can be used with integrity and at speed by any digital forensic tool using the free software supplied with SPEKTOR Rapid Imager.

CASCADE FORENSICS

Cascade Forensic Automation is a scalable solution combining policy driven automated workflow with high speed acquisition, core SPEKTOR triage technology and 3rd Party tool integration

“Every time a human touches the evidence, it takes longer and costs more”. Let CASCADE do the heavy lifting and get results sooner. Eliminate unnecessary forensic imaging and analysis, reduce storage costs, speed up decisions and delivery of preliminary results for review. Automate the high volume, low impact casework allowing your skilled analysts to focus on the complex, where their expertise is really needed. Reduce costs and dependency on outsourcing while building capability to cope with high volume ‘burst demand’

BREATHING INTELLIGENCE

Breathing Intelligence is a scalable, secure and highly customisable technology that uses SPEKTOR Control Pods in a hub and spoke topology to push the boundaries of connected intelligence even further.

Scalable, secure and highly customisable technology that uses SPEKTOR Control Pods to provide fully connected intelligence. Harnessing the powerful forensic collection, automated analysis and secure communications capabilities of the SPEKTOR Forensic Intelligence platforms, Breathing Intelligence creates an automated, intelligence driven risk awareness and alert network. SPEKTOR Breathing Intelligence can dramatically reduce the delay between data collection and actionable intelligence by automatically identifying and pushing critical data from target devices into central support systems. Connecting SPEKTOR Forensic Intelligence units to a Breathing Intelligence network enables the use of existing intelligence and entity mapping tools to achieve faster results, more efficiently and at lower costs than previously possible.

REMOTE FORENSICS

Our unique, patented architecture means that forensic imaging does not take place over a network. All processes are run directly on the remote hardware and only minimal data is actually transmitted over the connection. This makes the response lightning fast.

Remote Forensics works over any network so you can respond to an incident on your corporate network via your 3G phone and perform full speed forensic processing of evidence on the other side of the world. This patented technology is designed for a variety of organisations and situations. You can disconnect from target system and leave processes – such as imaging or keyword searching – running. This makes it easy and convenient to respond to multiple targets simultaneously. Remote Forensics is an architecture that can be deployed by a variety of industry sectors.

RESOURCES