Home / Current Issue / Paper 1713887
A Comparative Study of Mobile Forensics Tools - Open-Source vs Commercial Tools
Subject area: Science,Engineering and Technology · Area of research: Mobile Forensics
DOI: https://doi.org/10.64388/IREV9I7-1713887
Abstract
With the proliferation of mobile devices, forensic investigation of these devices has become imperative in today’s digital landscape. This paper presents a comparative analysis of Android mobile forensics tools, aiming to address the challenges posed by the diversity of Android devices and operating system versions. Leveraging both open source and commercial tools, logical and physical acquisition methods were employed to retrieve data from Android devices. Android Debug Bridge (ADB) Tool , Magnet Acquire and Belkasoft Acquisition tools were used for acquisition. The study utilizes Commercial tools - Magnet Axiom, E3:Universal, MOBILedit forensics and Belkasoft Evidence Centre while Open Source Tools used are SIFT Work- station and the Sleuth Kit with Autopsy. The findings provide insights into the strengths and limitations of each tool category through a comparison matrix, offering guidance for selecting the most suitable toolset for forensic investigations. Additionally, this study aims to assess the extent to which open source tools match or surpass their commercial counterparts, raising pertinent questions regarding their viability as substitutes.Can free open-source tools do the same job as expensive proprietary ones? Is such a transition feasible for the forensic industry? These inquiries underscore the paper’s broader implications for the evolution of forensic practices.
Keywords
Mobile Forensics, Digital investigation, Forensic Tools, Open Source, Data Acquisition
References
[1] Alatawi, H., Alenazi, K., Alshehri, S., Alshamakhi, S., Mustafa, M., Aljaedi, A. (2020). Mobile Forensics: A Review. 2020 International Conference on Computing and Information Technology (ICCIT-1441). doi:10.1109/iccit-144147971.2020.9213739
[2] P. Ruggiero, J. Foote, Carnegie Mellon University, and US-CERT, ”Cyber threats to mobile phones,” 2011. [Online].
[3] Sridhar N, Bhaskari D L, and Avadhani P. Plethora of Cyber Forensics. International Journal of Advanced Computer Science and Applications, 2011, 2(11),110 – 114.
[4] Sindhu K K, and Meshram B B. Digital Forensic Investigation Tools and Procedures. International Journal of Computer Network and Information Security, 2012, 4, 39-48, doi: 10.5815/ijcnis.2012.04.05.
[5] S. C. Sathe and N. M. Dongre, ”Data acquisition techniques in mobile forensics,” 2018 2nd International Conference on Inventive Systems and Control (ICISC), Coimbatore, India, 2018, pp. 280-286, doi: 10.1109/ICISC.2018.8399079.
[6] M. S. P. Lakshmi and P. Rajesh, ”A Forensic Approach to perform Android Device Analysis,” in Proceedings of the 7th Volume, 6S Issue of Blue Eyes Intelligence Engineering and Sciences Publication (BEIESP), March 2019, pp. 5-11.
[7] R. Lohiya, P. John and P. Shah, “Survey on Mobile Forensics,” Interna- tional Journal ofComputer Applications, vol. 118, p. 0975 –8887,2015.
[8] D. Yadav, M. Mishra and S. Prakash, ”Mobile Forensics Challenges and Admissibility of Electronic Evidences in India,” 2013 5th International Conference and Computational Intelligence and Communication Net- works, Mathura, India, 2013, pp. 237-242, doi: 10.1109/CICN.2013.57.
[9] A. Al-Dhaqm, S. A. Razak, R. A. Ikuesan, V. R. Kebande and K. Siddique, ”A Review of Mobile Forensic Investigation Process Models,” in IEEE Access, vol. 8, pp. 173359-173375, 2020.
[10] Al-Sabaawi, A., Foo, E. (2019). ”A Comparison Study of Android Mobile Forensics for Retrieving Files System.” , 13, 148-166.
[11] M. Hassan and L. Pantaleon, ”An investigation into the impact of rooting android device on user data integrity,” 2017 Seventh International Conference on Emerging Security Technologies (EST), Canterbury, UK, 2017.
[12] S. Sudin, A. Tretiakov, R. H. R. M. Ali and M. E. Rusli, ”Attacks on mobile networks: An overview of new security challenge,” 2008 International Conference on Electronic Design, Penang, Malaysia, 2008,
[13] N. Varol, A. F. Aydogan and A. Varol, ”Cyber attacks targeting Android cellphones,” 2017 5th International Symposium on Digital Forensic and Security (ISDFS), Tirgu Mures, Romania, 2017, pp. 1-5, doi: 10.1109/ISDFS.2017.7916511.
[14] Raju, S., Koundinya, A. K. and Bharathi, R. (2020). Gathering Evi- dence from Android OS for Mobile Forensics. International Journal of Computer Science and Network (IJCSN), 9(4), 1-10. (ISSN: 2277-5420)
[15] Patole, P., Totade, A., Patil, P. and Nagpure, R. (2022). OWASP Top 10 Web Attacks (2017) with Prevention Methods. International Research Journal of Engineering and Technology (IRJET), 9(4), 686. (e-ISSN: 2395-0056)
[16] F. Dian and J. Hudec, ”Efficient Sensitive Data Gathering with Forensic Analysis of Android Operating System,” 2019 17th International Con- ference on Emerging eLearning Technologies and Applications(ICETA)
[17] V. V. Rao and A. S. N. Chakravarthy, ”Forensic analysis of android mobile devices,” 2016 International Conference on Recent Advances and Innovations in Engineering (ICRAIE), Jaipur, India, 2016, pp. 1-6, doi: 10.1109/ICRAIE.2016.7939540.
[18] P. Dibb and M. Hammoudeh, ”Forensic Data Recovery from Android OS Devices: An Open Source Toolkit,” 2013 European Intelligence and Security Informatics Conference, Uppsala, Sweden, 2013, pp. 226-226, doi: 10.1109/EISIC.2013.58.
[19] Son, N., Lee, Y., Kim, D., James, J. I., Lee, S. and Lee, K. (2013). A study of user data integrity during acquisition of Android devices. Digital Investigation, 10(Supplement), S3-S11. https://doi.org/10.1016/j.diin.2013.06.001.
How to cite this paper
@article{1713887,
author = {Akshay Phalke, Kiran K Joshi, Sanika Chandode, Mayuri Pawar},
title = {A Comparative Study of Mobile Forensics Tools - Open-Source vs Commercial Tools},
journal = {Iconic Research And Engineering Journals},
year = {2026},
volume = {9},
number = {7},
pages = {2412-2420},
issn = {2456-8880},
url = {https://www.irejournals.com/formatedpaper/1713887.pdf},
abstract = {With the proliferation of mobile devices, forensic investigation of these devices has become imperative in today’s digital landscape. This paper presents a comparative analysis of Android mobile forensics tools, aiming to address the challenges posed by the diversity of Android devices and operating system versions. Leveraging both open source and commercial tools, logical and physical acquisition methods were employed to retrieve data from Android devices. Android Debug Bridge (ADB) Tool , Magnet Acquire and Belkasoft Acquisition tools were used for acquisition. The study utilizes Commercial tools - Magnet Axiom, E3:Universal, MOBILedit forensics and Belkasoft Evidence Centre while Open Source Tools used are SIFT Work- station and the Sleuth Kit with Autopsy. The findings provide insights into the strengths and limitations of each tool category through a comparison matrix, offering guidance for selecting the most suitable toolset for forensic investigations. Additionally, this study aims to assess the extent to which open source tools match or surpass their commercial counterparts, raising pertinent questions regarding their viability as substitutes.Can free open-source tools do the same job as expensive proprietary ones? Is such a transition feasible for the forensic industry? These inquiries underscore the paper’s broader implications for the evolution of forensic practices.},
keywords = {Mobile Forensics, Digital investigation, Forensic Tools, Open Source, Data Acquisition},
month = {January},
doi = {https://doi.org/10.64388/IREV9I7-1713887}
}