Ian Whiffin

DoubleBlak Digital Forensics is a Digital Forensics website aimed at helping forensic examiners find and present best evidence.

It is maintained by a Ian Whiffin, an ex-Law Enforcement Officer / Digital Forensics Examiner with a mid-sized municipal police agency.

With over twenty years experience in IT, 15 years in Policing (split between Canada and the UK) and just over 6 years in Digital Forensics, Ian has been qualified as a Subject Matter Expert in court numerous times and has a wealth of experience in the examination of computers, cell phones and other digital devices using not only a range of vendor tools but has created software tools to fill the gaps left by vendors. Many of these tools will be made available for free in the Software section of this site (Requires authentication).

Ian is trained with numerous forensic software tools related to mobile devices and computers and is also trained in JTAG, ChipOff, ISP, Visual NAND Reconstructor and enjoys tinkering with Hardware Reverse Engineering. He has been writing his own software for many years using numerous different languages including C#, VB, Obj-C, ASP, PHP, Python and Javascript.

Blog Posts
Blog posts written by myself or guest bloggers.

The blogs focus on exploring and explaining new or existing forensic techniques or artifacts found on a variety of devices.
A collection of links including other Blog sites, Articles & Resources.
A collection of free tools to assist with your cases.

Access to the downloads section requires authentication.

Click here to log on
A place to come together and collectively solve problems.

Post whatever details you can to share with the group and benefit from the experience of the collective forensic community.


Blog Posts

Locations, Locations, Locations
Ian Whiffin - 18th July 2020

A detailed look at Location data. How it is obtained and how accurate it is.

Click here to read the full blog post

Ian Whiffin - 7th June 2020

A look at how Favicons may be useful to your investigation.

Click here to read the full blog post

Ian Whiffin & Shafik G. Punja - 16th April 2020

A look at extracting iOS devices into a TAR archive using ios_bfu_triage.

Click here to read the full blog post

Primary Key / Date Stamp Fallacy
Ian Whiffin - 4th April 2020

A brief look at missing records within communication databases.

Click here to read the full blog post

More Blog Posts...

You need to authenticate in order to access the software section.

Authentication is free and easy and is a *most likely feable* attempt to stop the tools from getting into the hands of anybody outside of the forensic community.

Begin Authentication

More than just a forum to share pin-outs and links; GroupThink is designed as a place to collectively come together to solve the big problems. Propriatary Operating System? Rare/Unknown application? New hardware? These are just some of the types of things this area is designed for.

More Information...

Home Blog Links Software GroupThink