Your learning

Complete Digital Forensics Session C – Mobile Acquisition

After Session B, select a device profile, decide an acquisition method, prepare a collection plan, and complete an educational acquisition simulation.

Last reviewed: 28 August 2026

Before you begin

  • Your institution has enabled Domain Laboratories.
  • You have an active Academic Enrolment on the Course Offering.
  • Teaching staff have attached and enabled the Digital Forensics Laboratory.
  • You have completed Session A – Evidence Integrity and Session B – Browser Evidence for the same laboratory.

Open Session C

  1. Open My Learning and enter the Course Offering Learning Experience.
  2. Open Laboratories and launch Digital Forensics Laboratory.
  3. On the Digital Forensics hub, confirm Session B shows Completed.
  4. Select Start Session C (or Continue Session C).

Complete mobile acquisition

  1. Select a device profile that belongs to the investigation (Android, iPhone, locked, damaged, and other educational profiles).
  2. Review the acquisition methods and their advantages, limitations, risks, and best-use cases.
  3. Record an acquisition decision — choose a method and explain at least four factors (condition, battery, lock, encryption, debugging, storage, priorities, or legal considerations).
  4. Prepare an evidence collection plan covering strategy, tools, preservation, risks, expected artefacts, and estimated outcome.
  5. Complete the acquisition simulation steps in order (preparation through verification). This is educational only — AppliedMode does not connect to real devices.
  6. Optionally add Student notes.
  7. Select Mark summary ready, then optionally download the Mobile Acquisition Summary or Collection Plan PDFs.
  8. Select Complete Session C to finish and return to Learning Experience.

Notes

  • After each step (or on reload), the workspace opens on the section you need next so you do not have to hunt for it.
  • Decisions, plans, and timeline entries append to the same case file from Sessions A and B. Earlier evidence is not overwritten.
  • There is no ADB, UFED, GrayKey, or USB extraction in AppliedMode.
  • Session Completion PDF records Session C contribution only — it is not a final investigation report.
  • After Session C is completed, Session D – Mobile Analysis unlocks on the Digital Forensics hub so you can examine the educational mobile image.