Tech Letter vol 8. Investigating AirDrop Transfer Activities

In today’s interconnected world, a disturbing trend is emerging that threatens our digital safety and personal well-being. Imagine receiving an unsolicited, explicit image on your device while going about your daily routine. This is the reality for many victims of cyber flashing, a form of digital harassment that’s becoming increasingly prevalent globally. 

 

The Cyber Flashing Epidemic 

Cyber flashing, often facilitated through technologies like AirDrop, is a serious issue that’s causing growing concern worldwide. This form of digital harassment involves sending unsolicited explicit images to unsuspecting recipients, often in public spaces. The psychological impact on victims can be severe, leading to feelings of violation, anxiety, and distress. 

 

Challenges in Combating Cyber Flashing 

Law enforcement agencies face significant hurdles when investigating cyber flashing incidents. 

• Perpetrator anonymity through randomized device identifiers 

• Volatile evidence that disappears quickly 

• Encryption of transferred data hampers forensic investigation 

 

GMDSOFT: Pioneering Solutions 

Despite these challenges, GMDSOFT is at the forefront of developing innovative solutions to combat cyber flashing. MD-RED focuses on analyzing AirDrop transmissions to provide crucial insights for investigators. By leveraging advanced data analysis techniques, we can: 

• Reconstruct digital trails left by perpetrators 

• Offer valuable leads for law enforcement agencies 

With cyber harassment cases continuing to rise, traditional digital forensics methods often fall short. Our research demonstrates that MD-RED empowers law enforcement with actionable intelligence to hold cyber flashers accountable, significantly reducing investigation time when every second counts. Interested in learning more? Request our full Tech Letter to explore how we’re transforming digital forensics investigations. 


MD-Series, advanced mobile and digital forensics solution

As we step into 2025, digital forensics continues to evolve rapidly, shaped by technological advancements, an ever-expanding array of digital devices, and exponentially growing data volumes. At GMDSOFT, we’re pioneering the future through advanced AI integration while revolutionizing the field of digital forensic solutions. 
 
With over 20 years of expertise, we’re proud to present our MD-Series, an advanced digital & mobile forensics solution that’s trusted by law enforcement agencies and investigators worldwide. Our solutions ensure complete evidence integrity and unmatched technical reliability – hallmarks that set GMDSOFT apart in the industry. 

 

🚀 Introducing MD-Series 

🔹 MD-NEXT: State-of-the-art extraction software supporting a wide spectrum of digital devices. 

🔹 MD-RED: Sophisticated analysis software specialized in mobile & digital forensics. 

🔹 MD-LIVE: Rapid-response investigation tool enabling on-the-spot triage and data analysis. 

🔹 MD-VIDEO AI: Revolutionary all-in-one video forensic tool featuring advanced AI capabilities, including DVR recovery, enhancement, object detection, number plate & face restoration, deepfake face detection, and more 

🔹 MD-CLOUD: Powerful software for comprehensive cloud and server data extraction and analysis. 

🔹 MD-DRONE: Specialized forensic software for drone & UAV investigations. 

 

As digital evidence becomes increasingly crucial in criminal investigation, GMDSOFT remains committed to delivering innovative solutions that meet tomorrow’s challenges today. 

Want to unlock the future of digital investigations? Watch the full video of MD-Series! 

 


Tech Letter vol 7. iPhone Call Recording Artifacts

For nearly two decades, digital investigators faced significant challenges when dealing with iOS devices. The inability to directly record phone calls, limited methods for verifying verbal statements, and incomplete communication context often hindered comprehensive digital investigations. However, with the release of iOS 18.1, we are witnessing a paradigm shift in the field of digital forensics. 

The Historical Challenge 

Prior to iOS 18.1, investigators encountered several obstacles: 

• No direct method to record iPhone calls 

• Difficulty in verifying verbal statements 

• Poor audio quality from workaround solutions 

These limitations often left critical communication moments unverified, and investigations handicapped. 

iOS 18.1 Update 

iOS 18.1 introduces a native call recording feature, dramatically transforming the digital forensics landscape. This update provides forensic professionals with unprecedented evidence collection capabilities: 

• Access to full call recording files 

• Automated voice-to-text transcriptions 

• Detailed call history database 

Implications for Forensic Investigations 

With these new capabilities, investigators can now: 

• Validate witness statements with unprecedented accuracy 

• Uncover subtle communication dynamics 

• Develop more comprehensive investigative narratives 

This level of detail and context was previously unattainable, marking a significant advancement in digital forensics. 

GMDSOFT’s Role in the New Forensic Landscape 

At GMDSOFT, we are not mere observers of this technological shift – we are at the forefront of its implementation. Our forensic solutions are specifically designed to help investigators navigate these new digital landscapes, transforming complex technological capabilities into actionable investigative insights. 

If you’re interested in this tech letter, please request the full tech letter through the contact section below. Don’t miss out on this opportunity to gain deeper insights into the revolutionary changes in digital forensics! 

 


Mobile Triage Forensics software: MD-LIVE v3.6.4.1304 Update

As digital crime continually reshapes the technological battlefield, law enforcement agencies face unprecedented challenges with increasingly sophisticated messaging app security. Traditional digital forensic methods have struggled to effectively extract evidence from secure messaging platforms like Telegram. 
This advanced technology enables rapid and efficient processing of large volumes of data through text conversion and analysis. We offer comprehensive support for WhatsApp, Telegram, Facebook Messenger, and now NEW: LINE Messenger, delivering swift large-scale data analysis with intuitive word search and editing capabilities.  

 

Key Advantages of Chat Scanner 

🔹 Rapid acquisition and analysis of messenger evidence data 
🔹 OCR application to scanned conversation screens, word search, and error correction 
🔹 Enhanced accuracy and efficiency in on-site investigations 
🔹 Strengthened reliability of evidence preservation 

 

Global Impact Highlight: LINE Messenger stands as the Asian market leader with an impressive 80% market share in Japan, 90% penetration in Taiwan, and the #1 messaging platform in Thailand. Our latest update introduces advanced Japanese OCR, enabling precise text analysis, seamless international investigation support, and strategic data interpretation across language barriers. 
 
Experience the future of digital forensics with MD-LIVE’s Chat Scanner. Unlock possibilities that were once beyond reach. 

Tech Letter vol 6. Unveiling WeChat’s Hidden Voice messages

Understanding WeChat’s Global Impact 

 

WeChat stands as a remarkable phenomenon in the digital landscape, serving approximately 1 billion monthly active users – roughly one-fifth of global smartphone users. This “super-app” has transcended traditional messaging platforms by integrating numerous features into a single ecosystem, making it an essential part of daily digital life, particularly in Asian markets. 

 

What sets WeChat apart is not just its massive user base, but its unique technical architecture. Unlike other messaging platforms such as WhatsApp or Facebook Messenger, WeChat implements a distinctive server-side approach where all communications route through servers in China, creating additional layers of complexity for forensic investigations. 

 

The Challenge 

For digital forensics investigators, WeChat’s sophisticated infrastructure presents unprecedented challenges. Its self-contained platform creates an intricate maze where critical evidence often resides in unexpected locations, significantly complicating the recovery process. Traditional forensic approaches frequently fall short when confronting WeChat’s unique data storage patterns. 

 

Our Discovery 

During a recent investigation, our team uncovered a significant finding: critical media files such as recorded voice messages in WeChat exist in locations completely different from their documented paths. This discovery challenges traditional forensic approaches and opens new possibilities for evidence recovery. 

 

Key Problems We Solved 

  • ・ Hidden Evidence Trails: Locating critical files outside conventional storage paths 

  • Investigation Efficiency: Streamlining the evidence recovery process 

 

Conclusion 

Through this groundbreaking case study, GMDSOFT has demonstrated how MD-RED and MD-NEXT can revolutionize WeChat forensic investigations by efficiently tracking file storage paths and reconstructing user activities. We understand the frustration investigators face when crucial evidence proves elusive, leading to unnecessary delays and complications. This drives our mission to provide optimized tools and comprehensive technical support that make investigations more efficient and effective. Our solution not only addresses the complex challenges of WeChat’s unique architecture but also sets a new standard for digital forensic investigations. 

 

To discover how these innovative approaches and tools can transform your investigative capabilities, request our full tech letter for a complete analysis and implementation guide. 

Introducing De-identification feature in MD-VIDEO AI

Introduction 

In the rapidly evolving landscape of digital forensics, the intersection of evidence management and privacy protection presents unprecedented challenges. As organizations navigate through increasing volumes of digital evidence while adhering to stringent privacy regulations, the need for sophisticated tools has never been more critical. Today, we’re introducing a groundbreaking addition to MD-VIDEO AI: our comprehensive De-identification feature. 

 

The Privacy Challenge in Modern Forensics 

Digital evidence analysis has become increasingly complex, with investigators handling vast amounts of video data containing sensitive personal information. Traditional methods of managing this sensitive content often resulted in: 

  • Time-consuming manual redaction processes
  • Inconsistent privacy protection measures
  • Delayed evidence sharing between agencies
  • Limited collaboration due to privacy concerns

 

Our Solution: Advanced De-identification Technology 

To address these critical challenges, MD-VIDEO AI introduces a comprehensive de-identification feature that transforms how forensic teams handle sensitive video evidence. This new capability revolutionizes the traditional approach by providing: 

  • Automated masking tools that reduce processing time
  • Flexible selection and automated tracking of video frame area 
  • Standardized privacy protection protocols ensuring consistent results
  • Selective data preservation, maintaining essential information while removing sensitive content
  • Enhanced investigation efficiency through privacy-compliant collaboration 

Our intuitive interface combines powerful functionality with ease of use, enabling investigators to focus on their core mission while maintaining the highest standards of privacy protection. 

 

How to Use De-identification 

MD-VIDEO AI’s de-identification feature offers a streamlined, user-friendly workflow designed for efficient privacy protection in forensic investigations.  

 

Start by creating a new task in the main explorer, where you can import your video evidence and manage your project settings.  

Using the interactive video player, investigators can easily drag-select specific areas that require anonymization directly on the screen. 

  1. Menu: Start a new task, save it in the main explorer, or export the results to a desired location on PC. 
  2. Player: Play an imported video. You can drag-select the area on the player screen to apply blur or mosaic effects for de-identification. 
  3. De-Identification Settings: Select the type of effect to apply in the masked area and adjust the time range, size, or position of the mask. 
  4. Timeline: A workspace where you can manage the playback position of video, tracks, and clips. 

The De-identification Settings panel provides comprehensive control over the anonymization process, allowing users to choose between blur and mosaic effects, adjust mask intensity, and fine-tune time ranges and positions. For precise control over the video timeline, a dedicated workspace enables management of playback position, tracks, and clips, ensuring frame-accurate de-identification. These tools work seamlessly together, enabling investigators to efficiently protect sensitive information while maintaining the integrity of their evidence. Once processing is complete, users can export their results to their desired location on their PC, with the final output preserving both privacy requirements and video quality. 

 

Conclusion 

The introduction of De-identification in MD-VIDEO AI represents a significant advancement in digital forensics technology. By enabling secure and efficient evidence sharing across agencies while protecting sensitive information, we’re helping organizations accelerate their investigations without compromising privacy requirements. 

Stay tuned for more technical insights and updates on MD-VIDEO AI’s evolving capabilities. 

For detailed information and technical support, please contact to our sales team. 

How to load 3rd party extraction images into MD-RED

In the ever-evolving landscape of digital forensics, investigators face the constant challenge of piecing together evidence from a myriad of sources. As the complexity of digital crimes increases, so does the need for sophisticated tools that can seamlessly integrate data from various platforms. Enter MD-RED, GMDSOFT’s cutting-edge solution designed to transform the way forensic professionals approach data analysis and extraction. 

 

The Power of Unified Data Analysis 

MD-RED stands out in the crowded forensic toolkit market by offering a unique proposition: the ability to work harmoniously with the tools investigators already know and trust. This integration capability is not just a feature—it’s a game-changer in the field of digital investigations.  


Key Features of MD-RED: 
  1. 3rd party extraction image analysis : MD-RED excels in its ability to ingest and analyze images from a wide array of industry-leading tools. Whether you’re working with data from Magnet GrayKey, Cellebrite UFED, OpenText EnCase, ACELab PC3000 Mobile PRO or other prominent platforms, MD-RED ensures compatibility with all leading forensic platforms, making image analysis faster and more reliable.
 
  1. Multi-Source Data Integration : MD-RED provides investigators with the capability to consolidate and analyze data from various tools in a single platform. By breaking down silos between different tools, MD-RED improves the clarity and accessibility of critical information, leading to more informed decision-making.
  1. Streamlined Workflow Efficiency : One of the biggest advantages of MD-RED is its ability to eliminate the need for switching between multiple tools. Investigators can now focus on the evidence itself, rather than managing multiple platforms. This streamlined approach significantly boosts productivity, helping investigators uncover critical evidence faster.
  1. Analysis Result data compatibility : MD-RED provides the analysis results as the import source of global data review tools such as Relativity, NUIX and various SQLite Database viewers. This compatibility also helps forensic investigators, lawyers or data scientists with incorporating the data from mobile phones easily in their data review tools.

 

MD-RED: Embracing Diversity in Tools 

At GMDSOFT, we operate on a fundamental principle: no single tool can uncover every piece of critical information in a digital investigation. This realization drives our unwavering commitment to supporting third-party tools and integrating diverse data sources. 

By developing MD-RED with this philosophy in mind, we’ve created a solution that doesn’t seek to replace existing tools but rather to enhance and unify them. This approach allows investigators to leverage their preferred tools while benefiting from MD-RED’s powerful integration and analysis capabilities. 

 Whether you’re dealing with complex cybercrime cases, corporate investigations, or legal disputes, MD-RED provides the comprehensive support needed to navigate the intricacies of digital evidence. 

 

Experience MD-RED Advantages 

In conclusion, as the digital world continues to expand and evolve, so too must the tools we use to investigate it. MD-RED represents a significant leap forward in this ongoing evolution, offering a unified, powerful, and flexible solution for today’s digital forensic challenges. 

We are thrilled to announce that MD-RED v4 is on the horizon, promising an even more robust suite of capabilities. This upcoming release represents a significant leap forward in our commitment to excellence in digital forensics. Stay tuned for MD-RED v4, where we’re pushing the boundaries of what’s possible in digital investigation technology. 

 Contact us today to learn more about how MD-RED can benefit your organization. 

Tech Letter vol 5.Analysis of Baidu Cloud Artifacts

Unveiling the Dark Side of Cloud Technology 

In our increasingly digital world, cloud technology has revolutionized data storage and sharing. However, this convenience comes with a hidden cost. The borderless nature of cloud services, particularly those hosted overseas, has created a haven for cybercriminals, making it challenging to combat illegal content distribution effectively. 

 

The Challenge 

Cloud data complicates traditional digital forensic investigations due to the physical distribution of evidence across various locations. The lack of specialized forensic tools for cloud environments further hinders the collection and analysis of evidence.  

In particular, Baidu Cloud is being used for cybercrime, leveraging the challenges of cracking down on overseas cloud services. To access Baidu Cloud data, direct collection from the cloud is required. However, in situations where it is difficult to remotely search, seize a server, or obtain account information, user behavior can still be estimated through the analysis of app data. 

 

GMDSOFT Solution: 

At GMDSOFT, we provide a groundbreaking approach to tackle this issue head-on. When direct access to cloud data is impossible, we analyze app data stored on mobile devices to track user behavior. This method allows us to reconstruct user activities like piecing together a puzzle. 

 

Beyond Cybercrime 

GMDSOFT is dedicated not only to tracking cybercriminals but also to fostering a safer and more equitable digital landscape. We are at the forefront of addressing the new challenges of the digital age, ensuring justice and security through our innovative technology. 

For more in-depth insights, request GMDSOFT Tech Letter, and learn how we can help safeguard your digital environment! 

MD-Series Release Note Highlights : 2024 Q3 Review

In the rapidly evolving world of digital forensics, staying ahead of technological advancements is crucial. As digital landscapes continue to change, the need for comprehensive and accurate data extraction becomes paramount. 

At GMDSOFT, we’re committed to empowering investigators with cutting-edge technology that meet the challenges of modern digital investigations. Our Q3 release for the MD-Series represents a significant leap forward, introducing a host of new features and improvements across our entire product line. 
 

Let’s dive into the details of what this release brings to the table: 

 

📱 MD NEXT 
  • Models update of FFS(MD-PLUG) – 30 manufacturers, 400 new models , 916 updated models
  • Now supports the latest Galaxy S24 series up to Android 14
📊 MD-RED 
  • Supports New Apps – 34 new Android & 13 new iOS apps 
  • Enhanced support for the analysis of images extracted using UFED program (BFU extraction)
  • Supports new instant messaging apps (Group ME, Letstalk IM, MEEFF) & digital wallet
👮🏻 MD-LIVE 
  • New feature to reconnect the device if the connection is lost after analysis
☁️ MD-CLOUD 
  • Ability to analyze SIP(VolP calls) field of Google Contacts
🚁 MD-DRONE 
  • Added new 2 DJI Aircraft and 4 Flight Controller models for extraction & analysis
🎥 MD-VIDEO AI 
  • New ‘Object Length Measurement’ feature
  • Added 12 more countries to ‘Number Plate Restoration’

 

This Q3 release of the MD-Series represents our ongoing commitment to innovation in the field of digital forensics. By continuously expanding our device and app support, enhancing existing features, and introducing new capabilities, we’re ensuring that investigators have the tools they need to tackle even the most complex digital investigations efficiently and effectively. 

As the digital landscape continues to evolve, GMDSOFT remains dedicated to staying at the forefront of forensic technology. We’re already hard at work on our next round of innovations, always with the goal of empowering forensic professionals to uncover the truth in our increasingly digital world. 

Stay tuned for more updates, and don’t hesitate to reach out if you’d like to see these new features in action or discuss how the MD-Series can enhance your investigative capabilities. 

If you would like to request the full release note, please press the button to ask for full release note. 

MD-NEXT v2.1.8: Expanding Galaxy S24 and Android 14 Full Filesystem Support

We’re excited to announce the release of MD-NEXT v2.1.8, which brings significant improvements. This update focuses on expanding device support, enhancing existing features, and introducing new capabilities to streamline the digital investigation process.

 

1.New Feature: Extended Android Full Filesystem

🔹 Samsung Devices 

We’ve substantially expanded our support for Samsung devices, now covering over 35 models across various series: 

– Galaxy S series: S24, S23, S23 FE, S22, S21, S20, S20 FE 

– Note series: Note20 

– Z series: Z Fold6, Z Flip6, Z Flip5, Z Fold5, Z Flip4, Z Fold4, Z Flip3, Z Fold3, Z Fold2, Z Flip 5G, Z Fold, Z Flip 

– A series: A90, A71, A54 5G, A53 5G, A51, A42, A34, A33 5G, A32, A31, A23, A22, A21s, A14, A12, A03s 

– M and F series: M53, M33, F22 

– Other models: Jump2, Quantum4, Tab A7 Lite, Quantum2, Wide5 Series 

– Supported Android versions: 11 through 14 

🔹 Google Pixel Devices 

– Pixel 8, 8 Pro, 7a, 7, 7 Pro, 6a, 6, 6 Pro series 

– Supported Android versions: 13 and 14 

🔹 Sharp Devices 

– Added support for AQUOS sense7 

– Supported Android versions: 12 and 13 

 

2. Android Live 

– Added ‘App List in Multispace’ tab to the extraction completion screen  

– Enhanced ADB Backup UI 

– TeamViewer downgrade support 

– Improved IMEI extraction for Dual SIM and eSIM 


3.iOS Backup 

Added Nicegram to major app data checks 


4.Create MDF 

Support for encrypted backups and Secure Folder data from Samsung Smart Switch  


5.Electronically Stored Information (ESI) 

Added ESI report generation for physical extractions 


MD-NEXT represents a significant step forward in mobile forensics capabilities. By expanding Full Filesystem support and enhancing key features, we’re providing investigators with more powerful tools to extract and analyze digital evidence efficiently. 

We encourage all users to update to this latest version to take advantage of these improvements. As always, we welcome your feedback and suggestions for future enhancements. 

Stay tuned for more updates as we continue to evolve MD-NEXT to meet the changing landscape of mobile forensics.