The future of mobile device evidence analysis- MD-RED v4 Coming soon

After extensive research and invaluable feedback from our MD-RED v3, we’re thrilled to announce that MD-RED v4 is launching soon – and it’s a complete game-changer. 

 

What Makes MD-RED v4 Extraordinary? 

Lightning-Fast Performance: Process massive datasets with unprecedented speed and reliability

🧠 AI-Powered Intelligence: Advanced media analysis with cutting-edge AI models that think ahead

🎯 Intuitive Discovery: Find exactly what you need with smart search and filtering capabilities  

Built for the Challenges of Tomorrow : As digital evidence becomes more complex and data volumes explode, traditional tools simply can’t keep up. MD-RED v4 doesn’t just solve today’s problems – it anticipates tomorrow’s needs. 

 

Key Breakthrough Features: 

• AI-Enhanced Media Intelligence: Leverage machine learning for smarter evidence discovery 

• Real-Time Multi-Window Integration: Synchronized analysis across multiple windows for maximum efficiency  

• Optimized Analysis Architecture: Faster performance with fewer errors through enhanced structural design 

• Advanced Synchronization: Effortless data selection across multiple analysis streams 

• New advanced analysis features: PC Messenger analysis, Malware detection, Speech-To-Text, Machine translation, CDR analysis 

 

Ready to Transform Your Digital Forensics Process? 

MD-RED v4 represents years of innovation, user feedback, and technical excellence rolled into one powerful platform. This isn’t just an upgrade – it’s a complete reimagining of what digital evidence analysis can be.  Stay tuned for the official launch and feel free to reach out to us for more information!

 


MD-LIVE is Becoming the Go-To Mobile Triage Solution for Investigators Across America and the UK

The landscape of digital forensics has evolved dramatically with the proliferation of mobile devices as primary repositories of critical evidence. MD-LIVE represents a paradigm shift in triage mobile forensics, delivering sophisticated data extraction capabilities while maintaining stringent privacy protocols essential for modern investigative work. Currently gaining significant attention from investigators in the United States and the United Kingdom, this article introduces MD-LIVE and its transformative impact on triage investigations.

 

1.Technical Capabilities and Triage Applications 

 

Real-Time Data Processing Architecture 

MD-LIVE’s core strength lies in its live mobile data extraction and analysis capabilities. It enables real-time processing of digital evidence, allowing investigators to make informed decisions during active investigations. This immediate data availability significantly reduces case resolution timelines and enhances investigative efficiency. 

Evidence Acquisition Protocol 

MD-LIVE addresses a critical challenge in modern forensics: balancing comprehensive evidence collection with privacy protection. MD-LIVE’s selective data acquisition technology allows investigators to: 

• Exclude non-relevant personal information from collection scope 

• Maintain evidentiary integrity while respecting privacy boundaries 

• Collect selective evidence data at specific times and dates while excluding personal privacy data 

Advanced Data Capture Technology 

The system incorporates sophisticated scanning, recording, and screenshot capture capabilities, providing investigators with comprehensive documentation tools. This capability ensures that all relevant digital evidence is preserved in its original context, maintaining a chain of custody requirements. 

 

2.Strategic Advantages for Triage Operations 

 

Operational Mobility and Deployment 

MD-LIVE’s portable design addresses the critical need for immediate triage investigation capabilities. This solution eliminates the traditional requirement for device confiscation and laboratory processing, enabling investigators to conduct immediate evidence collection at crime scenes and significantly reduce evidence processing backlogs. This streamlined approach allows law enforcement teams to maintain operational momentum while minimizing disruption to victims and witnesses during the investigative process. 

Enhanced Privacy Protection Framework 

The privacy-first approach is particularly valuable when working with vulnerable populations. By implementing selective data collection protocols, investigators can obtain necessary evidence while protecting sensitive personal information, thereby maintaining trust with victims and witnesses. 

Bridging Operational Gaps 

MD-LIVE addresses the longstanding challenge of extended device seizure periods. Traditional forensic processes often require smartphones to be held for extended periods of time. This creates hardships for device owners and potential legal complications. The targeted extraction capabilities enable investigators to collect relevant evidence without prolonged device retention. 

Criminal Investigation Enhancement 

MD-LIVE serves as a powerful tool for criminal investigators, providing immediate access to key digital evidence. Its real-time processing capabilities enable investigators to identify leads, corroborate testimony, and build stronger cases during active investigations. 

Corporate and Civil Applications 

Beyond criminal investigations, MD-LIVE serves corporate audit teams and eDiscovery consultants who require precise, legally defensible data collection capabilities. The selective extraction features ensure compliance with data protection regulations while meeting investigative objectives. 

 

3.Conclusion 

MD-LIVE represents a significant advancement in mobile forensics technology, addressing critical operational challenges while maintaining the highest standards of privacy protection and evidence integrity. For professional investigators seeking to enhance their field investigation capabilities, MD-LIVE offers a comprehensive solution that bridges the gap between investigative needs and modern privacy requirements.

The combination of real-time processing, selective data acquisition, and portable design makes it an invaluable tool for criminal investigators, corporate security professionals, and specialized enforcement teams. As digital evidence continues to play an increasingly central role in investigations, tools like MD-LIVE will become essential components of professional investigative capabilities. 

For investigators interested in upgrading their field investigation capabilities with MD-LIVE, please feel free to contact us for more information.

 


GMDSOFT Tech Letter Vol12.Artifact Analysis Using Telegram Data Exports

The Growing Challenge in Cybercrime Investigations 

The proliferation of encrypted messaging platforms has fundamentally transformed the landscape of digital forensics. Among these platforms, Telegram has emerged as a particularly formidable challenge for law enforcement agencies and investigators worldwide. Its robust end-to-end encryption, coupled with sophisticated data protection mechanisms, has created significant obstacles in extracting crucial digital evidence from mobile devices during investigations.  

 

Technical Challenges 

Modern cybercrime investigations face unprecedented challenges when attempting to extract Telegram data from smartphones. The platform’s implementation of multiple security layers—including local encryption features—creates a complex forensic environment that traditional mobile extraction tools struggle to navigate effectively. 

 

Evidence Recovery Limitations 

Even when investigators successfully gain physical access to a suspect’s mobile device, the recovered Telegram data often represents only a fraction of the complete digital footprint. Critical evidence elements frequently remain inaccessible, including: 

• Deleted conversation histories that may contain pivotal investigative leads 

• Group participation records essential for mapping criminal networks 

• Multi-device usage patterns that reveal the scope of criminal operations 

• Account metadata necessary for comprehensive timeline reconstruction  

 

Transforming Cybercrime Investigation Strategies 

Fortunately, contemporary criminal operations rarely confine themselves to single-device communications. Desktop Telegram applications generate distinct digital artifacts that can provide investigators with previously inaccessible evidence streams through data export functionality.  

GMDSOFT’s MD-RED transforms traditional forensic limitations into investigative opportunities. By leveraging the complementary nature of mobile and desktop digital artifacts, investigators can extract more comprehensive and legally robust evidence profiles. 

 

Conclusion: The Future of Encrypted Messaging Forensics 

As encrypted messaging platforms continue to evolve and strengthen their security implementations, the forensic community must adapt with equally sophisticated investigative methodologies. Multi-platform analysis capabilities represent more than just a technical advancement, but a fundamental evolution in how digital evidence is conceptualized and recovered.  

MD-RED exemplifies this evolution, providing law enforcement agencies with the tools necessary to navigate the complex landscape of modern encrypted communications. By transforming investigative dead ends into actionable intelligence pathways, these advanced forensic capabilities ensure that the pursuit of justice keeps pace with technological advancement. 

If you want to learn more about Telegram desktop data exports, request the full tech letter! 

 


GMDSOFT Tech Letter Vol11.Artifact Analysis Using Instagram Data Exports

The Growing Threat Landscape 

With over 2 billion monthly active users worldwide, Instagram has evolved far beyond a simple photo-sharing platform. It has become a primary communication channel—and unfortunately, a hunting ground for sophisticated cybercriminals. From elaborate romance scams targeting vulnerable seniors in the UK to organized cyberstalking networks terrorizing college campuses across the United States, criminals are increasingly exploiting Instagram’s Direct Message feature to execute complex, long-term schemes.  

 

The Technical Challenge: DM Storage Architecture 

Instagram’s current architecture presents a significant limitation for forensic investigators. The platform implements a rolling storage mechanism that retains only the most recent 20 Direct Messages per conversation thread in standard device analysis scenarios.  

 

Technical Solution: Leveraging Data Export Functionality 

Instagram’s “Download your information” feature provides a comprehensive alternative data acquisition method. This functionality generates complete archives containing: 

• Full conversation histories without the 20-message limitation 

• Comprehensive account details and profile information 

• Complete media upload records including posts and reels 

• Detailed timestamp data for temporal analysis 

• Cross-platform activity logs from both Android, iOS, and web environments 

 

Advanced Analysis with MD-RED 

At GMDSOFT, we’ve developed specialized capabilities within our MD-RED to analyze Instagram export data from both Android and iOS devices. Our solution bridges the gap between Instagram’s data export functionality and the practical needs of forensic investigators. 

 

Real-World Impact 

The difference between standard analysis and comprehensive Instagram data examination can be case-changing. Investigations that previously hit dead ends due to limited message visibility now have access to complete criminal communication records.  

 

Conclusion 

As social media platforms continue to evolve their data retention policies and technical architectures, forensic investigators must adapt their methodological approaches accordingly. The combination of Instagram’s data export functionality with specialized analysis tools like MD-RED provides a robust solution for overcoming current platform limitations. This approach not only addresses immediate investigative needs but also establishes a framework for comprehensive social media forensics that can adapt to future platform changes and emerging criminal methodologies.  

Tech Letter Vol.11 provides detailed, step-by-step guidance on implementing Instagram DM analysis in your forensic workflow, including best practices for data export and analysis techniques. If you want to learn more about Instagram DM analysis, request the full tech letter! 

 


GMDSOFT 2025 TTT Course Launch – Empowering Forensic Trainers Worldwide

We are thrilled to announce the commencement of GMDSOFT’s 2025 Train-The-Trainer (TTT) Course, running from May 19-23, 2025. This course marks a significant opportunity for digital forensics professionals to elevate their training capabilities and become Authorized Training Partners (ATP). 

Why Forensic training is important in today’s forensic landscape 

In an era where cybercrime evolves at unprecedented rates, traditional investigative methodologies struggle to keep pace. The digital forensics field demands continuous education and skill development to effectively counter sophisticated threats. GMDSOFT’s TTT Course addresses this critical need by: 

• Establishing Standards of Excellence: Only ATP-certified trainers can deliver GMDSOFT’s official training, ensuring consistent quality worldwide 

• Bridging the Knowledge Gap: Providing cutting-edge training on MD-Series forensic tools to meet growing industry demands 

• Creating Trusted Expertise: Developing a global network of certified professionals who represent the gold standard in forensic training 

 

Becoming a GMDSOFT Authorized Training Partner offers unparalleled benefits: 

🌟 Exclusive Certification Status 

• Gain the prestigious distinction as an officially recognized GMDSOFT training provider 

• Deliver GCMP certification courses that are increasingly sought after in the forensic community 

💼 Business Growth & Expansion 

• Diversify your service offerings with high-value official training programs 

• Enhance your organization’s reputation as a leader in digital forensics education 

 

The TTT Course is meticulously designed to transform skilled practitioners into exceptional trainers: 

🛠️ Master the MD-Series  

• Gain comprehensive understanding of all MD-Series capabilities and applications 

• Access exclusive training materials and resources reserved for certified partners 

• Learn advanced troubleshooting techniques directly from GMDSOFT experts 

📊 Enhanced Training Methodology 

• Develop structured training approaches optimized for digital forensics education 

• Engage in direct exchanges with GMDSOFT’s instructors 

• Receive personalized feedback to refine your instructional approach 

 

Invest in Your Future as a Forensic Training Leader 

The digital forensics landscape continues to expand, creating unprecedented demand for qualified instructors. By completing the TTT course and becoming an ATP, you position yourself at the forefront of this growing field while demonstrating your commitment to excellence. 

We extend our sincere appreciation to our international partners participating in the TTT Course. 

Together, we are building a stronger global digital forensics community equipped to meet tomorrow’s challenges. 

 


2025 MD-Series Q1 Release Note Highlights

The first quarter of 2025 marks a significant milestone in our ongoing commitment to enhancing digital investigation capabilities. We are pleased to announce substantial improvements across the entire MD-Series, with particular emphasis on our drone forensics capabilities and expanding the number of countries supporting number plate restoration feature. 

These advancements reflect our dedication to providing law enforcement agencies, and investigators with cutting-edge tools that address the evolving challenges in the digital investigation landscape. 

 

Key Highlights:

 

📱 MD NEXT

• Model update of FFS (MD-PLUG) – 16 Manufacturers, 112 New models  

• Supports UI for 中文, 日本語, Tiếng Việt Beta

📤 MD-RED

• Supported New Apps – 21 Android Apps, 9 iOS Apps 

• Added support for JPEG XL(JXL) image format

👮🏻‍♀️ MD-LIVE

• Support UI for Bahasa Indonesia  

• Improved OCR analysis performance on iOS devices

☁️ MD-CLOUD

• Improved extraction stability for iCloud and Facebook
• Additional analysis for adjusted timestamp for iCloud photos

🚁 MD-DRONE

• New extraction method that analyzes files exported from DJI Assistant 

• Added Physical Extraction support with USB extraction method with DJI models.

🎥 MD-VIDEO AI

• ‘Number Plate Restoration’ covering 37 countries + 29 Regions of USA  

• ‘Multi-Input Number Plate Restoration’ covering 8 countries + 9 Regions of USA

 

To learn more about how these updates can enhance your investigative capabilities, please contact our sales team for full release note. 

 


GMDSOFT Tech Letter vol 10. Artifact Analysis of Google Maps Timeline

The Evolution of Google Maps Timeline as Forensic Evidence 

Google maps timeline has established itself as one of valuable data sources in digital forensic investigations since its launch in 2015. This powerful feature meticulously records a user’s location history, providing investigators with precise coordinates and timestamps that can place individuals at specific locations with remarkable accuracy. 

For years, forensic experts have relied on this data to reconstruct event sequences, establish or refute alibis, and map suspect movements in criminal investigations. The data’s strength lies in its passive collection methodology—Google captures location information whenever a Google service is activated on a device, even while the device is idle. This creates a comprehensive digital footprint spanning months or even years of user activity. 

 

A Significant Policy Shift 

In December 2023, Google implemented a significant policy change regarding location history storage and access that has substantially impacted forensic investigations. Previously, investigators could export timeline data through desktop browsers, allowing for streamlined analysis and integration with forensic tools. However, Google’s new policy restricts Timeline exports exclusively to mobile devices. 

 

GMDSOFT’s MD-RED: Adapting to the New Reality 

In response to Google’s policy changes, GMDSOFT has enhanced its mobile device evidence analysis program, MD-RED, to efficiently process timeline data exported from both Android and iOS devices. This specialized solution addresses the new challenges faced by investigators while maintaining the forensic completeness of the evidence.  

This month’s Tech Letter provides an in-depth examination of MD-RED’s capabilities for Google maps Timeline analysis, exploring techniques for proper extraction of Timeline data from mobile devices while showcasing advanced analysis methodologies that reveal valuable investigative information from Google Maps Timeline data. 

 

Looking Ahead 

As technology companies continue to modify their data policies, digital forensic methodologies must evolve accordingly. GMDSOFT remains committed to developing solutions that adapt to these changes while maintaining the highest standards of forensic analysis. 

For forensic professionals seeking to navigate Google’s new policy effectively, the combination of proper training, specialized tools like MD-RED, and adherence to rigorous forensic procedures will be essential in continuing to leverage this critical source of evidence. 

To learn more about analyzing Google maps timeline data with MD-RED and to receive the latest updates on digital forensic best practices, request for this month full Tech Letter. 


GMDSOFT Partners with Ulaanbaatar City Council to Revolutionize Traffic Safety Through Advanced Forensic Technology

GMDSOFT is pleased to announce a significant milestone in our commitment to public safety and technological innovation. Our recent Memorandum of Understanding (MOU) with ULAANBAATAR CITY COUNCIL of MONGOLIA represents a transformative approach to addressing traffic-related challenges through advanced forensic technologies. 

A Collaborative Vision for Safer Urban Environments 

We were honored to host the Citizen’s Representative for the Capital City and the Head of Investigation Department of Traffic Police at GMDSOFT HQ. This pivotal meeting underscored the critical need for technological interventions in traffic crime investigation. 

Understanding the Technological Landscape 

Mongolia’s urban transportation ecosystem faces significant challenges in traffic crime investigation. Limited technological infrastructure has historically hindered law enforcement’s ability to effectively analyze, document, and resolve complex traffic incidents. These challenges extend beyond mere statistical concerns, representing real-world safety risks for citizens and systemic limitations in legal enforcement. 

GMDSOFT’s Comprehensive Technological Solution 

Our partnership introduces a comprehensive suite of advanced video forensic technologies designed to dramatically enhance investigative capabilities.  

MD-VIDEO AI is an AI-based solution with cutting-edge Vehicle Detection technology that accurately identifies various vehicles in video files, advanced Number Plate Identification technology that recognizes all the vehicle numbers seen in the frame and proprietary Number Plate Restoration technology that reconstruct identifiable vehicle number from surveillance footage with unclear and low-resolution plate images—providing critical evidence for previously unsolvable cases. 

More Than Technology: A Commitment to Public Safety 

This collaboration transcends technological deployment. We are fundamentally reimagining how urban traffic safety can be approached, leveraging data-driven insights and state-of-the-art forensic technologies to create more secure transportation ecosystems. 

Looking Forward: A Shared Commitment to Innovation 

As we embark on this transformative journey with ULAANBAATAR CITY COUNCIL of MONGOLIA, GMDSOFT remains committed to pushing the boundaries of what’s possible in traffic crime investigation. Our partnership represents not just a technological solution, but a shared vision of safer, more intelligent urban environments. 

Stay tuned for ongoing updates about this groundbreaking partnership and its potential impact on urban safety technologies. 


MD-DRONE: Advancing the Future of Drone Forensics

Why Drone Forensics Matters 

In today’s rapidly evolving technological landscape, drones have become ubiquitous tools across industries ranging from photography and agriculture to security and emergency services. However, this proliferation has also introduced new challenges in digital forensics and security. Unauthorized drone operations, privacy violations, and potential use in criminal activities have created an urgent need for sophisticated drone forensic capabilities. 

Traditional digital forensics methods often fall short when applied to drone technologies due to their unique operating systems, proprietary data formats, and complex flight control mechanisms. This gap in forensic capabilities can leave investigators without crucial evidence and organizations vulnerable to security breaches. 

Introducing MD-DRONE v1.5.0.249 

MD-DRONE stands at the forefront of drone forensic technology, delivering comprehensive solutions that address these challenges. Our latest update introduces groundbreaking features designed to transform how professionals approach drone investigations and security. 

 

Key Highlights: 

• Physical extraction 

   ・ Added support for the USB extraction method

   ・ DJI: Phantom 4 Advanced, Phantom 4 Pro, Phantom 4 Pro V2.0, Phantom 4 RTK, Matrice 600 Pro, N3(FC), A3(FC) 

• MD-PLUG: Enhanced Extraction Hardware  

   ・ Our specialized hardware interface works seamlessly with MD-DRONE to enable efficient data extraction 

   ・ Minimizes failures caused by PC environment variations 

   ・ Provides the decryption of encrypted flight logs used in modern drone systems 

• DJI Assistant File 

   ・ Introduces a new extraction method that analyzes files exported from DJI Assistant. 

 

Experience the Future of Drone Forensics 

MD-DRONE represents the cutting edge of drone forensic technology, developed by industry experts with real-world experience in digital investigations and drone security. Our commitment to innovation ensures you’ll always have access to the most advanced tools available. 

Schedule a demonstration today to see how MD-DRONE can transform your drone forensic capabilities and provide the evidence you need when it matters most. 

 


Tech Letter vol 9. Investigating an Unknown USIM as Digital Evidence

When criminals thought they were untraceable, a single USIM told their whole story. 

In a stunning breakthrough that reads like a techno-thriller, authorities recently dismantled a sophisticated international fraud ring that had stolen hundreds of millions of dollars by impersonating prosecutors and police officers. Their biggest mistake? Underestimating the silent witness in their pocket. 

Despite constantly switching phones and USIM cards to evade detection, these criminals couldn’t escape the digital breadcrumbs they left behind. One recovered USIM contained the critical evidence that brought down their entire operation. 

 

The digital fingerprint you carry every day 

That simple chip in your phone isn’t just connecting you to networks—it’s storing a wealth of information about your digital life. While fraudsters thought they were outsmarting investigators by swapping devices, they failed to understand one crucial fact: each USIM carries a unique digital signature that can link back to its user. 

In digital forensics, this tiny component often becomes the smoking gun. When suspects surrender alternative devices, the story told by their USIM can break their alibi wide open. 

 

What secrets does your USIM hold? 

MD-NEXT can extract and analyze data from unidentified USIM cards, transforming seemingly random data into case-breaking evidence. 

 

What could your USIM reveal about you? 

Tech Letter vol.9 delves into the fascinating world of USIM forensics, unveiling: 

•The data structures that expose user identity 

•How investigators track criminals through USIM footprints 

 

Are you curious about what stories your own USIM card could tell? 

Request the complete Tech Letter to discover the incredible forensic techniques that are revolutionizing digital investigations.