Third-party application burner phone analysis

dc.contributor.advisorMcCoy, Mark
dc.contributor.authorHernandez, Magali
dc.contributor.committeeMemberElliott, Rachael
dc.contributor.committeeMemberPark, Grace
dc.date.accessioned2025-06-30T16:49:48Z
dc.date.available2025-06-30T16:49:48Z
dc.date.issued2025
dc.description.abstractIn today’s day and age, how people communicate is changing. Communication is often done using cell phones, specifically among users through multiple third-party applications. Although the options available to communicate are endless, they are also becoming a very dangerous tool. A third-party communication application is an application that is downloaded by a user to communicate with friends and family or socialize, separate from the mobile device text messaging. However, third-party applications are often used in criminal activities. Users’ need for privacy also pushes manufacturers to improve and impose strong security features in their software. These improvements make forensic examinations and recovery of such data on mobile devices more difficult. This study explores the recovery of data from disposable numbers offered by the Burner application. The mobile devices utilized in the study differentiate in operating systems to compare data recovered in an Android operating system and an iOS operating system. Within the Burner Application, three lines will be used to exchange messages, photos, and videos. Data extraction and parsing will be conducted with Cellebrite UFED 4PC version 7.73.0.68 and Cellebrite Physical Analyzer Inseyets version 10.5.0.1016. The research demonstrated that the different operating systems contribute to how much data is recovered. In this study, the amount of data recovered from the Apple iPhone 15 Plus, an iOS device associated with the Burner application, was more significant than the Samsung Galaxy S23 Ultra, Android operating system. Future research should utilize various Android devices as they differ based on manufacture and service provider. Data associated with the Burner application is recoverable depending on the operating system. Using different mobile devices forensic tools could also yield different results. This research applies methods for recovering disappearing messages to recover digital artifacts created by Burner’s disposable number feature, an area not previously studied or published.
dc.identifier.oclc(OCoLC)1526560739
dc.identifier.other(Alma MMSId)9983118390202196
dc.identifier.urihttps://hdl.handle.net/11244/341510
dc.rightsAll rights reserved by the author, who has granted UCO Chambers Library the non-exclusive right to share this material in its online repositories. Contact UCO Chambers Library's Digital Initiatives Working Group at diwg@uco.edu for the permission policy on the use, reproduction or distribution of this material.
dc.subject.keywordsDigital forensics
dc.subject.keywordsMobile forensics
dc.subject.keywordsThird-party communication application
dc.subject.lcshMobile device forensics
dc.subject.lcshData recovery (Computer science)
dc.thesis.degreeM.S., Forensic Science - Digital Forensics
dc.titleThird-party application burner phone analysis
dc.typeAcademic theses
thesis.degree.grantorJackson College of Graduate Studies

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
HernandezM2025.pdf
Size:
11.8 MB
Format:
Adobe Portable Document Format

License bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
license.txt
Size:
2.01 KB
Format:
Item-specific license agreed upon to submission
Description: