In-System Programming (ISP) Forensic Training

5 days
Advanced-level course
The In-System Programming Extraction (CAIE) training is an advanced level five-day course lead by Cellebrite Certified Instructors (CCIs). During this course, participants will learn about the In-System Programming (ISP) process using the precision soldering techniques, eMMC/eMCP theory, methodologies, and purpose as well as understand the equipment and accessories necessary for performing direct eMMC/eMCP (ISP) extractions without the need for chip-off and destroying the mobile device.
NEW! Unique custom-made Advanced Solutions Kits for various extraction methods. Advanced Solution Kits are available as a stand-alone "solution kit only" purchase or as a bundle with this course. To learn more, or to purchase this course with an accompanying solution kit visit our page About Advanced Solution Kits
Course Content

Mobile Device Technology Overview
- Proper Identification of Mobile Devices
- Overview of How Mobile Devices Communicate
- Artifacts of Interest
- Information Potentially Available from Providers

Flash Memory
- Practical implications of ISP a mobile device
- Method
- JTAG vs. ISP
- Safety Concerns
- Encryption

Electrical Theory and Power
- Mobile Device Power
- Basic Elecronics
- Powering eMMC/eMCP chip for ISP
- Using DC Power Supply

Soldering Technique
- Solder the enamed wire onto the circut board
- Purpose
- Safety
- Techniques

Reference and Research
- How to determine if ISP process is the best option.
- ISP pinouts
- Support or unsupport ISP process

Tools and Equipment
- Equipment needed to safely prepare a mobile device for ISP
- Equipment needed to safely remove the chip
- Items needed for post processing
- Basic soldering/cleaning
- Preparing the board for soldering
- Testing Connectivity

Forensic Process
- Best practice for ISP process
- Hashing
- Validation

Cell Phone Disassembly
- Sealed devices
- Battery precautions
- Parts
- Removing the motherboard

eMMC/eMCP Chip Removal
- Heat Gun Methods
- Chip Removal
- Cleaning
- Locate the ISP Pinout using multimeter
- Preparing to read

RIFF Box and Z3X Box Software
- Install RIFF Box and Z3X Box software
- Discuss various options within the software
- Add on accessories

Z3X Pro Imaging
- Using the MOORC kit
- Z3X Pro Software
- Direct-Solder onto a eMMC/eMCP chip

Introduction to Physical Analyzer
- PA Advanced Open
- PA Chaining for flash memory
- Preparing a report of results
- Practicalstart with a device which must have the chip removed to process the data.
Last modified: Monday, December 16, 2019, 3:39 PM