Parsing the Truth: One Byte at a Time
Parsing the Truth: One Byte at a Time

Former FBI senior forensic examiners Becky Passmore and Stacy Eldridge dive into the world of digital forensics—one byte at a time. Now running their own firms and teaching the next wave of cyber sleuths, they share real-world case insights, expert tips, and a sharp sense of humor. From computer and iPhone forensics to ransomware attacks, this podcast unpacks how digital evidence solves modern crimes. Perfect for cybersecurity pros, students, and true crime techies. Join us as we Parse the Truth, One Byte at a Time. We focus on how digital evidence is used to find facts in today's crimes.

Deepfakes are everywhere, and determining the Provenance of digital evidence is more important and challenging than ever before. Lars Daniel joins us to discuss the steps digital forensic examiners can take in their next case.Special Guest: Lars DanielConnect with Lars:⁠https://www.thelarsdaniel.com/⁠⁠https://www.linkedin.com/in/larsdaniel/⁠Support the podcast ⁠⁠⁠https://patreon.com/parsingthetruth⁠⁠⁠About this EpisodeStacy Eldridge and Becky Passmore talk with Lars about the growing risk of AI generated evidence, why screenshots and consumer device media are increasingly unreliable on their own, and why provenance now has to be treated as a core evidentiary issue.The conversation focuses on how examiners, attorneys, judges, insurers, and law enforcement can respond before fake media becomes routine in litigation and investigations.Key topicsIn this episode, Lars explains how his work in trucking and accident investigations led him into the deeper problem of AI manipulated media and digital evidence triage.He breaks down the practical categories he uses with counsel and claims professionals:He describes the business case for a layered review process: automated screening, human review, then a digital forensics expert when litigation is possible.The discussion emphasizes that the best way to prove authenticity is still to return to the original device and source evidence whenever possible.Lars warns that consumer device evidence often arrives with weak or no provenance, unlike enterprise systems that may have stronger built in controls.The hosts and Lars discuss how deep fake claims may become a litigation tactic, forcing the other side to spend time and money disproving authenticity even when the evidence is real.He explains the liar’s dividend and why it can be used not just as a defense, but as a strategy to raise costs and create uncertainty.A recent civil case example shows how a manipulated video, including added water to suggest a slip and fall, was initially treated as real until deeper analysis raised questions.Lars stresses that examiners need to stay in their lane, know when to refer specialized work, and avoid claiming expertise across every digital forensics niche.Listeners will learnHow deep fakes, shallow fakes, and enhancement differWhy screenshots are no longer enough to trust digital evidenceHow to build a layered authenticity review processWhy provenance matters in legal and investigative settingsWhen to return to the original device for verification
Part 2: We continue the conversation with Jessica Hyde regarding the Daubert Standard, AI, and Peer Reviews.Special Guest: Jessica Hyde, HexordiaSupport the podcast ⁠https://patreon.com/parsingthetruth⁠Detailed Summary of Part 2:In this episode, we explore the critical intersection of digital forensics, legal standards, and artificial intelligence. Jessica Hyde shares her expert insights on the importance of proper testing, validation, peer review, and the evolving standards that govern forensic evidence in court.Key topics in Part 2:The fundamentals of the Daubert standard for admissible scientific evidenceHow digital forensics tools and methodologies meet (or don’t meet) Daubert criteriaChallenges introduced by AI and machine learning models in forensic analysisThe critical role of peer review, including internal lab processes and community validationThe importance of independent testing and error rate assessment for evidence reliabilityUpcoming legislative and regulatory efforts around AI in forensic evidencePractical steps for examiners to prepare for Daubert challenges and improve credibilityThis episode emphasizes that sound scientific methodology, rigorous peer review, and validation are the backbone of credible digital forensic testimony. Links:The Daubert Standard ⁠https://www.law.cornell.edu/wex/daubert_standard⁠Rule 702 ⁠https://www.law.cornell.edu/rules/fre/rule_702⁠NIST Foundations document ⁠https://nvlpubs.nist.gov/nistpubs/ir/2022/NIST.IR.8354.pdf⁠NIST OSAC Guidelines for Dataset Development ⁠https://www.nist.gov/system/files/documents/2026/01/16/OSAC-DE-Guidelines%20for%20Dataset%20Development.pdf⁠DFIR Review ⁠https://dfir.pubpub.org/⁠Upcoming work from SWGDE in this area including the draft Quality Management System ⁠https://www.swgde.org/25-q-001-draft/⁠ Hexordia Creating Mobile Text Data FREE Online Class ⁠https://learn.hexordia.com/courses/Creating-Mobile-Test-Data-66eae235a2b4ef2d6b79cef3⁠Hexordia FREE Mobile Peer Review Checklist ⁠https://www.hexordia.com/blog/gc0vnvj80ogwx724ovu7avzwvjl742?rq=peer%20review⁠Rule 707 Regarding AI ⁠https://www.purduegloballawschool.edu/blog/news/ai-generated-materials-federal-rules-evidence ⁠Connect with Jessica Hyde on LinkedIn ⁠https://www.linkedin.com/in/hydejessica/⁠Connect with Hexordia on Twitter ⁠https://x.com/hexordia⁠
Jessica Hyde joins us to explain what you need to know about Daubert to help you ensure your evidence doesn't get tossed in your next big case. We'll also discuss a new proposed rule of evidence regarding AI.Special Guest: Jessica Hyde, HexordiaSupport the podcast https://patreon.com/parsingthetruthDetailed Summary of Part 1:In this episode, we explore the critical intersection of digital forensics, legal standards, and artificial intelligence. Jessica Hyde shares her expert insights on the importance of proper testing, validation, peer review, and the evolving standards that govern forensic evidence in court.Key topics:The Daubert standard: what it is and why it matters for forensic evidenceFive Daubert factors: testing, peer review, error rates, standards, and general acceptanceChallenges of using black box AI tools and generative models in forensic analysisWhy clicking 'export report' without validation is a legal liabilityThe upcoming Federal Rule of Evidence 707 and its impact on AI-generated evidenceThe importance of independent testing, standardization, and peer review in court readinessNightmare scenarios: when evidence fails Daubert criteria, leading to inadmissibilityThe role of certification, experience, and standardization for digital forensic examinersHow practitioners can proactively prepare for Daubert challenges and legislative changesPractical steps for conducting rigorous testing and peer review of forensic artifactsThis episode emphasizes that sound scientific methodology, rigorous peer review, and validation are the backbone of credible digital forensic testimony. Links:The Daubert Standard https://www.law.cornell.edu/wex/daubert_standardRule 702 https://www.law.cornell.edu/rules/fre/rule_702NIST Foundations document https://nvlpubs.nist.gov/nistpubs/ir/2022/NIST.IR.8354.pdfNIST OSAC Guidelines for Dataset Development https://www.nist.gov/system/files/documents/2026/01/16/OSAC-DE-Guidelines%20for%20Dataset%20Development.pdfDFIR Review https://dfir.pubpub.org/Upcoming work from SWGDE in this area including the draft Quality Management System https://www.swgde.org/25-q-001-draft/ Hexordia Creating Mobile Text Data FREE Online Class https://learn.hexordia.com/courses/Creating-Mobile-Test-Data-66eae235a2b4ef2d6b79cef3Hexordia FREE Mobile Peer Review Checklist https://www.hexordia.com/blog/gc0vnvj80ogwx724ovu7avzwvjl742?rq=peer%20reviewRule 707 Regarding AI https://www.purduegloballawschool.edu/blog/news/ai-generated-materials-federal-rules-evidence Connect with Jessica Hyde on LinkedIn https://www.linkedin.com/in/hydejessica/Connect with Hexordia on Twitter https://x.com/hexordia
This episode with Brett Shavers explores why the most important skill in digital forensics is an investigative mindset—using critical thinking, legal authority, and objective analysis to follow the evidence, avoid bias, and tell a clear story from the data.More about this episode:In this episode of Parsing the Truth One Bite at a Time, Stacey Eldridge and Becky Passmore sit down with digital forensics expert Brett Shavers to explore what really separates strong examiners from great investigators. Rather than focusing only on tools and software, the conversation dives into the investigative mindset, critical thinking, confirmation bias, legal authority, and how to build defensible conclusions from digital evidence. Listeners will learn why forensic tools are only a means to an end, how to challenge assumptions during an examination, and why clear communication is just as important as technical skill. Brett also shares practical insights on AI in digital forensics, explaining where it can help, where it can mislead, and why human judgment still matters. Whether you work in digital forensics, teach the subject, or want to understand how investigations are built from evidence, this episode offers actionable lessons you can use immediately.Connect with Brett Shavers Online⁠https://www.dfir.training/about-brett-shavers⁠⁠https://www.linkedin.com/in/brettshavers/⁠Grow your Investigative Mindset with Brett Shavers Books⁠https://brettshavers.com/my-books⁠Support the Podcast⁠https://www.patreon.com/c/ParsingtheTruth⁠Get Parsing the Truth Swag and Merch⁠https://parsing-the-truth.printify.me/⁠
In the 2005 trial of the People vs Michael Jackson, the FBI examined numerous Mac computers and laptops, but there was no testimony regarding any of that digital evidence. What did the FBI find? Or rather, what didn't they find? And why wasn't there any testimony? We discuss all that and more in this week's episode.Support the podcast by joining our Patreon community!⁠https://www.patreon.com/cw/ParsingtheTruth⁠Parsing the Truth merchandise is finally available⁠http://parsing-the-truth.printify.me⁠Learn more about our Episode Sponsorhttps://acecomputers.com/forensics/The FBI Vault on Michael Jackson⁠https://vault.fbi.gov/Michael%20Jackson⁠Michael Jackson Trial Transcripts⁠https://www.themichaeljacksoninnocentproject.com/transcripts-patrons-only/⁠More on this episode...Discover how case notes, chain-of-custody logs, and redacted FOIA documents reveal a story of procedural missteps, technical confusion, and the challenges of late 90s and early 2000s digital forensics. You’ll uncover:How law enforcement and forensic experts classified, stored, and tracked digital evidence in a high-profile caseWhy crucial digital evidence was excluded from the courtroomThe significance of the FOIA releases, redacted case notes, and courtroom transcripts that show the struggle of proving or disproving digital misconductHow the complexities of Mac computers, confusing acronyms, and outdated technology hindered the case’s digital narrativeWhy this case remains a cautionary tale in digital forensics, highlighting the importance of proper evidence collection, documentation, and expert testimonyThis episode is perfect for legal professionals, digital forensic investigators, courtroom enthusiasts, or anyone interested in understanding how digital evidence can make or break a trial — especially when it’s mishandled or misunderstood. If you’ve ever wondered what really happens behind the scenes when law enforcement investigates digital devices, this episode is your answer.
In the 2005 trial of the People vs Michael Jackson, the FBI examined numerous Mac computers and laptops, but there was no testimony regarding any of that digital evidence. What did the FBI find? Or rather, what didn't they find? And why wasn't there any testimony? We discuss all that and more in this week's episode.Support the podcast by joining our Patreon community!https://www.patreon.com/cw/ParsingtheTruthParsing the Truth merchandise is finally availablehttp://parsing-the-truth.printify.meLearn more about this episode's sponsorhttps://acecomputers.com/forensics/The FBI Vault on Michael Jacksonhttps://vault.fbi.gov/Michael%20JacksonMichael Jackson Trial Transcriptshttps://www.themichaeljacksoninnocentproject.com/transcripts-patrons-only/More on this episode...Discover how case notes, chain-of-custody logs, and redacted FOIA documents reveal a story of procedural missteps, technical confusion, and the challenges of late 90s and early 2000s digital forensics. You’ll uncover:How law enforcement and forensic experts classified, stored, and tracked digital evidence in a high-profile caseWhy crucial digital evidence was excluded from the courtroomThe significance of the FOIA releases, redacted case notes, and courtroom transcripts that show the struggle of proving or disproving digital misconductHow the complexities of Mac computers, confusing acronyms, and outdated technology hindered the case’s digital narrativeWhy this case remains a cautionary tale in digital forensics, highlighting the importance of proper evidence collection, documentation, and expert testimonyThis episode is perfect for legal professionals, digital forensic investigators, courtroom enthusiasts, or anyone interested in understanding how digital evidence can make or break a trial — especially when it’s mishandled or misunderstood. If you’ve ever wondered what really happens behind the scenes when law enforcement investigates digital devices, this episode is your answer.
This week, Becky shares a case about the discovery of multiple invoices linked to a fraud scheme. She submitted her reports. She shows up to the courtroom, and that's where things go off the rails. Find out what happens while Becky is providing expert witness testimony in the courtroom.Support the podcast by joining our Patreon community!https://www.patreon.com/cw/ParsingtheTruthParsing the Truth merchandise is finally availablehttp://parsing-the-truth.printify.meCheck out our episode Sponsorhttps://acecomputers.com/forensics/
The hosts of the Digital Forensics Now podcast, Heather Charpentier and Alexis Brignoni, interview Stacy and Becky, asking questions ranging from how the podcast got its start to whether it ok to discuss pending cases.You can connect with Healther and Brigs and the Digital Forensics Now Podcast at:SpotifyYouTubeFind out more about the LEAPPSFind out more about IACIS
We're taking a look back at the 52 episodes of Season One, sharing some more lessons learned, and discussing what's on tap for Season Two!This episode is sponsored by Ace Forensics. https://acecomputers.com/forensics/
Few cases have tested digital forensic practice as publicly as the first Karen Read trial. We're breaking down the biggest takeaways so you can apply them where it matters most... your next case.
Richard Green's testified as the digital forensic expert for the defense. We are diving into the first half of his testimony, where he shares the data, identified during the investigation of this case. This is part 2 of 2 for Richard Green's testimony. This is episode 10 of our deep dive into the 2024 Karen Read trial. Testimony provided by: Richard GreenDigital forensics artifacts mentioned: KnowledgeC.dbBiomesSafari / WAL filesCall History Database & WAL filessKey Terms: Hos long to die in coldHow long ti die in cikdExhibits:⁠⁠⁠⁠https://docs.google.com/spreadsheets/d/18lUM6dU2A7JcWSxgZb1t5qLeBkQ26z0h_JBWYPGThXQ/edit?gid=1477225811#gid=1477225811⁠⁠⁠⁠
Richard Green's testified as the digital forensic expert for the defense. We are diving into the first half of his testimony, where he shares the data, identified during the investigation of this case. This is part 1 of 2 for Richard Green's testimony. This is episode 9 of our deep dive into the 2024 Karen Read trial. Testimony provided by: Richard GreenDigital forensics artifacts mentioned: KnowledgeC.dbBiomesSafari / WAL filesCall History Database & WAL filessKey Terms: Hos long to die in coldHow long ti die in cikdExhibits:⁠⁠⁠https://docs.google.com/spreadsheets/d/18lUM6dU2A7JcWSxgZb1t5qLeBkQ26z0h_JBWYPGThXQ/edit?gid=1477225811#gid=1477225811⁠⁠⁠
Nick Guarino's testimony centers on digital artifacts and the analysis of data. We're breaking down the second half of his testimony, where he shares the data he dug into to uncover the facts of this case. This is part 2 of 2 for Nick Guarino's testimony. This is episode 8 of our deep dive into the 2024 Karen Read trial. Testimony provided by: Nick Guarino, TrooperDigital forensics tools mentioned: GrayKeyCellebrite Digital forensics artifacts mentioned: KnowledgeC.dbBiomesSafari / WAL filesCall History Database & WAL filessKey Terms: Hos long to die in coldHow long ti die in cikdExhibits:⁠⁠https://docs.google.com/spreadsheets/d/18lUM6dU2A7JcWSxgZb1t5qLeBkQ26z0h_JBWYPGThXQ/edit?gid=1477225811#gid=1477225811⁠⁠
Nick Guarino's testimony centers on digital artifacts and the analysis of data. We're breaking down the first half of his testimony, where he shares the data he dug into to uncover the facts of this case. This is part 1 of 2 for Nick Guarino's testimony. This is episode 7 of our deep dive into the 2024 Karen Read trial. Testimony provided by: Nick Guarino, TrooperDigital forensics tools mentioned: GrayKeyCellebrite Digital forensics artifacts mentioned: KnowledgeC.dbBiomesSafari / WAL filesCall History Database & WAL filessKey Terms: Hos long to die in coldHow long ti die in cikdExhibits:⁠⁠https://docs.google.com/spreadsheets/d/18lUM6dU2A7JcWSxgZb1t5qLeBkQ26z0h_JBWYPGThXQ/edit?gid=1477225811#gid=1477225811⁠⁠
Special Guest Ian Whiffin joins us to discuss details about his testimony during the first Karen Read Trial. We ask technical questions to get to some of the facts that weren't shared during his testimony.This is episode 6 of our deep dive into the 2024 Karen Read trial. Special Guest: Ian Whiffin, CellebriteIan Whiffen's website: ⁠https://www.doubleblak.com/⁠Digital forensics tools mentioned: ArtEx - https://www.doubleblak.com/Cellebrite Digital forensics artifacts mentioned: KnowledgeC.dbbrowserstate.dbcom.app.mobilesafari.plisthistory.dbweb usage logsKey Terms: Hos long to die in coldHow long ti die in cikd
Ian Whiffin's testimony centers on digital artifacts and data analysis. We are covering the second half of his testimony, in which he shares the data he dug up to uncover the facts of this case. His testimony was very technical and descriptive. This is part 2 of 2 for Ian Whiffin's testimony. This is episode 5 of our deep dive into the 2024 Karen Read trial. Testimony provided by: Ian Whiffin, CellebriteDigital forensics tools mentioned: ArtExCellebrite Digital forensics artifacts mentioned: KnowledgeC.dbbrowserstate.dbcom.app.mobilesafari.plisthistory.dbweb usage logsKey Terms: Hos long to die in coldHow long ti die in cikdExhibits:⁠https://docs.google.com/spreadsheets/d/18lUM6dU2A7JcWSxgZb1t5qLeBkQ26z0h_JBWYPGThXQ/edit?gid=1477225811#gid=1477225811
Ian Whiffin's testimony centers on digital artifacts and the analysis of data. We're breaking down the first half of his testimony, where he shares the data he dug into to uncover the facts of this case. His testimony was very technical and descriptive. This is part 1 of 2 for Ian Whiffin's testimony. This is episode 4 of our deep dive into the 2024 Karen Read trial. Testimony provided by: Ian Whiffin, CellebriteDigital forensics tools mentioned: ArtExCellebrite Digital forensics artifacts mentioned: KnowledgeC.dbbrowserstate.dbcom.app.mobilesafari.plisthistory.dbweb usage logsKey Terms: Hos long to die in coldHow long ti die in cikdExhibits:https://docs.google.com/spreadsheets/d/18lUM6dU2A7JcWSxgZb1t5qLeBkQ26z0h_JBWYPGThXQ/edit?gid=1477225811#gid=1477225811
We continue our deep dive into Jessica Hyde’s testimony, focusing on the second half of her analysis and the critical insights she uncovered. In this portion, she builds on the artifacts and findings introduced earlier, connecting the digital evidence to form a clearer narrative of events. Her testimony is so detailed and technically in-depth that we divided it into two parts. In this episode, we present Part 2 of 2, where the remaining elements of her forensic analysis are brought together to complete the full pictureTestimony Provided By: Jessica Hyde of HexordiaDigital Forensics Tool mentioned:Magnet Axiom ExamineCellebriteiLEAPPDigital Forensics Artifacts mentioned:KnowledgeC.dbcallhistory.storedata com.apple.mobilesafari.plistbrowser state.dbbrowserstat.db-WALKey Terms:Hos long to die in coldHow long ti die in cikdLinks:Jessica Hyde's written report⁠https://drive.google.com/file/d/13dup-E9h3NmD0Tjhzl6Htudx34DQ0x5_/view?usp=sharing⁠List of 2024 Karen Read Trial Exhibits⁠https://docs.google.com/spreadsheets/d/18lUM6dU2A7JcWSxgZb1t5qLeBkQ26z0h_JBWYPGThXQ/edit?usp=sharing⁠Link to ScienceDirect article "Standardization of File Recovery Classification and Authentication."https://www.sciencedirect.com/science/article/abs/pii/S1742287618304602
Jessica Hyde's testimony centers around the search term "Hos long to die in cold" discovered on Jennifer McCabe's phone. We're breaking down the first half of her testimony, where she shares information about the artifacts she dug into to find the facts of the case. Her testimony was so detailed that we had to break it up into two parts. This is part 1 of 2 of Jessica Hyde's testimony.This is Episode 2 of our deep dive into the 2024 Karen Read trial.Testimony Provided By: Jessica Hyde of HexordiaDigital Forensics Tool mentioned:Magnet Axiom ExamineCellebriteiLEAPPDigital Forensics Artifacts mentioned:KnowledgeC.dbcallhistory.storedata com.apple.mobilesafari.plistbrowser state.dbbrowserstat.db-WALKey Terms:Hos long to die in coldHow long ti die in cikdLinks:Jessica Hyde's written reporthttps://drive.google.com/file/d/13dup-E9h3NmD0Tjhzl6Htudx34DQ0x5_/view?usp=sharingList of 2024 Karen Read Trial Exhibitshttps://docs.google.com/spreadsheets/d/18lUM6dU2A7JcWSxgZb1t5qLeBkQ26z0h_JBWYPGThXQ/edit?usp=sharingLink to ScienceDirect article "Standardization of File Recovery Classification and Authentication."https://www.sciencedirect.com/science/article/abs/pii/S1742287618304602
A single Google search. A disputed timestamp. And a murder trial that ended in a mistrial.In the high-profile Karen Read case, competing digital forensics experts offered contradictory testimony about when a key witness searched “hos long to die in cold” on an iPhone. But let’s take a step back and first review the affidavit that started it all.This session breaks down defense expert Richard Green’s affidavit that challenged the prosecution’s narrative and ultimately won Karen Read access to additional evidence. We’ll discuss the specific artifacts Green analyzed, why context matters, and how no digital evidence artifact stands alone.This is Episode 1 of our deep dive into the 2024 Karen Read trial.Digital Forensics Tool mentioned:Magnet AxiomCellebriteDigital Forensics Artifacts mentioned:KnowledgeC.dbcallhistory.storedata com.apple.mobilesafari.plistbrowser state.dbKey Terms:Hos long to die in coldHow long ti die in cikdLinks:Richard Green Affidavithttps://assets.super.so/669329c3-e11b-4cc8-9a05-1c7f310ff348/files/80f46306-87ad-41c2-a85a-138a816e44b6/Affidavit_of_Richard_Green_in_Support_of_Defendants_Motion_for_Order_Pursuant_to_MASS._R._CRIM._P._17_Directed_to_Brian_Albert_Verizon_and_ATT.pdfDefense Motionhttps://elderlaw.info/wp-content/uploads/2023/09/sj-2023-0343-petition.pdf
We're starting our series on the 2024 Karen Read trial. We're digging into the testimony given by digital forensic examiners. In this episode, we're going to preview what we've got in store for you.What will the facts and artifacts reveal? Tune in every Thursday to find out!
Did Leslie Hartman commit suicide, or was it murder? Did her boyfriend, a sheriff's deputy, murder her, or just make the 911 call? Find out how ChromeCache and trace evidence from Discord helped solve the case. Mario Merendon joins us this week to walk us through his role in this case. Mario emphasizes the importance of curiosity, validation, and inter-agency collaboration in digital forensic work. His careful testing and validation of timestamps, web cache data, and chat logs made the difference in solving this complex case. Special Guest: Mario Merendon of VX Digital DefenseFind Mario at https://www.vxdigitaldefense.com/Digital Forensics Tools Mentioned in this Episode:Magnet Forensics AxiomChromeCacheDcodeDigital Platforms Mentioned in this Episode:DiscordKey Topics from this Episode:The importance of verifying digital evidence beyond default tool outputsUtilizing open-source tools like ChromeCache View to dig deeper into web and application cachesCorrelating timestamps from images, chats, and web activity to build a timelineChallenges and solutions in extracting data from wiped phones and encrypted devicesThe significance of validation and testing in building a credible digital caseCollaboration strategies with law enforcement and prosecutors to strengthen findingsLessons learned: curiosity, thorough documentation, and validation as core to successful forensics
Last week, we had lots of questions about those printed emails. So we brought on Lauren Hillery, who saw all the emails, to give us the inside scoop.Lauren shares the defense's strategy with regards to the emails, the authentication issues, and tells us more about hiring a digital forensic examiner as a public defender. This is Part 2 only. Go back and listen to Part 1 in S1 E38https://open.spotify.com/episode/3Xpa2gtG0fYI73sQV8Y37V?si=3vk-s0JQS0m3xPU0EW39CgSpecial Guest: Public Defender Lauren HilleryData Sources Mentioned in This Episode:TwitterGmailEmailiPhone
Sixty printed emails. Partial evidence. Incomplete story. Learn how digital forensics can fill the gaps in this real-world case.Episode Summary:This week, Becky and Stacy explore a case where printed emails became the centerpiece of a legal trial. A mother and daughter presented 60 pages of printed emails, which were actually Twitter DM notifications, as evidence of a crime. Discussions include the complexities of email authentication, the potential for email spoofing, and why forensic examination is essential for verifying digital communications. Will the jury take the printed emails into consideration? Tune in, and find out.Key Takeaways:Digital evidence can be easily manipulated, making authentication crucial.Email headers are vital for verifying the origin of messages.Forensic examiners play a key role in legal cases involving digital evidence.Printed emails lack the necessary metadata for authentication.Email spoofing is a common technique used to forge messages.Forensic tools can reveal discrepancies in email timestamps.Legal teams must understand digital evidence to argue effectively in court.The jury's understanding of digital evidence can impact trial outcomes.Forensic examiners must communicate findings clearly to non-experts.Digital evidence issues can determine the outcome of a case.
David Freyman shares how collaboration helps put together the digital pieces of the Lauren Giddings murder. Learn how hashes of IP addresses, a seemingly innocuous USB drive, and a previously ignored digital camera reveal vital clues that bolster the case.Special Guest: Retired FBI SA David FreymanDigital Forensics Techniques Mentioned in this Episode:MD5 Hashing: Used for verifying data integrity and identifying unique digital signatures.Epoch Time Conversion: A method for interpreting timestamps stored as a series of numbers.File Recovery Software: Utilized to recover deleted video files from a camera.The Lauren Giddings case was still making headlines in 2025. Learn more at https://www.13wmaz.com/article/news/local/macon/family-of-murdered-mercer-law-student-lauren-gidding-renew-search-body/93-9fda7367-e568-4c50-924e-8f4d1148631d
Explore the gripping Bobby Jo Stinnett case, where digital forensics helped prove premeditation. Discover how recovering internet history led to an IP Address that led to a killer and kidnapper.Special Guest: Mark JohnsonFind Mark Johnson on the Computer Crime Chronicles at https://open.spotify.com/show/2EEWgr7sY07DzyimzdQnktTrigger Warning: Fetal Abduction by Maternal Evisceration is discussed. In this case, the baby does survive.Episode Summary: In this episode, digital forensics expert Mark Johnson delves into the intricate digital investigation of the Bobby Jo Stinnett case. Mark examined a wide range of digital evidence, including emails, internet history, and cached web pages, to piece together a timeline of events. His analysis uncovered crucial details, such as the suspect's online searches for unassisted home births and emergency C-sections, and the manipulation of ultrasound images. By leveraging tools like EnCase and Internet Evidence Finder, Mark's expert review of digital footprints played a pivotal role in solving this rare and gruesome crime, demonstrating premeditation, and ultimately leading to the recovery of the kidnapped infant and justice for the victim.Software Mentioned in this Episode:EnCaseInternet Evidence FinderWayback MachineNetscape NavigatorInternet Explorer
We explore the need for human expertise in solving cybercrimes. We discuss forensic tool limitations, examiner competence, and evolving technology challenges in digital evidence analysis. We'll also share insights on effective forensic methodologies and discuss the strengths and weaknesses of tools in real cases we've worked. Please join Stacy Eldridge and Becky Passmore for this episode of Parsing the Truth: One Byte at a Time.Digital Forensics Tools and Software Mentioned:AxiomSQLite ViewerExcelCelebrite UFED ReaderAutopsyFex Forensic TakeawaysTools don't solve cases, people do.Digital forensic tools amplify expertise, not replace it.Understanding data structures is crucial for examiners.Networking and communication are key in digital forensics.Forensic tools are effective when data is stable and predictable.Examiner competence is critical for courtroom defensibility.Manual analysis provides precision, tool-assisted analysis offers feasibility.Forensic success depends on methodologies, not expensive tools.Tools assume metadata is intact, which isn't always the case.Expertise lives in the chair, not in the tool.Tools don't speak. People speak.
What makes an expert witness persuasive? Preparation, Presence, Education. Tune in as Laura Heldwein, a nearly 40-year FBI veteran, helps us break down how to testify with credibility and clarity.Special Guest Laura Helwein.
To find Ricky Saxton's murderer, Wayne Mitchell has to manually recover hundreds of tiny digital crumbs in an attempt to find video evidence of Ricky's murder. But here's the thing, Wayne was almost kept out of the loop. Find out how it all went down.Special Guest: Wayne Mitchell
Dive into the illusion of online safety provided by emojis. We explore whether covering a child's face with an emoji truly protects their identity. Learn the hidden risks and digital breadcrumbs left behind.
We're sharing 12 must-know artifacts to get you through the holiday season AND any digital forensics case that might come your way. Cozy up with your favorite beverage and sing along.
Get the inside scoop from the digital forensics expert who testified about all the cell phone location records and the SIM Card swapping in the Mushroom Murders case.Special Guest: Dr. Matthew Sorrell from AustraliaThis is Part 4 Only.Go back and listen to parts 1 - 3 in Season 1, Episodes 27 - 29, if you haven't yet.
What do the prosecution and defense say about all this digital evidence during their closing arguments in the mushroom murders? We're breaking it down along with some discussion on suppressed evidence from this case.This is Part 3 Only.Make sure to go back and listen to Parts 1 and 2 if you haven't done that yet.
In Part 2 of the mushroom murder, we discuss SIM card swapping and factory resetting mobile devices. Will there be any digital evidence left? AKA the Erin Patterson Murders.This is Part 2 of 4 Only.
In this episode, we travel to Australia to learn about the digital evidence in the Erin Patterson Case, AKA the Mushroom Murders. We discuss cell phone location records and browser history to see if they can reveal any clues about where those deadly mushrooms originated.
Can you believe we're already 25 episodes into this podcast?! Join us as we look back at why we started, what we've learned, and what we're looking forward to.Thank you to everyone who has listened, shared, and joined us as a guest!Of course, we look back at BTK and Casey Anthony. But we also talk about some new things like Karen Read and X's and O's on hard drives...
Stacy Eldridge & Becky Passmore spoke live at the Oxygen Forensics Conference, reflecting back on how 25 years of technology and humanity colliding have shaped everything from hex-level disk editors to six-figure software suites, and even the American Justice System.Tune in for the nostalgia and stay for the stories with a few laughs along the way.Special Thanks to:-Oxygen Forensics for hosting us-Keither Lockhart for inviting us-Briggs for recording us and providing our own personal laugh track.-All of you for listening!
Stacy Eldridge & Becky Passmore spoke live at the Oxygen Forensics Conference, reflecting back on how 25 years of technology and humanity colliding have shaped everything from hex-level disk editors to six-figure software suites, and even the American Justice System.Tune in for the nostalgia and stay for the stories with a few laughs along the way.Special Thanks to:-Oxygen Forensics for hosting us-Keither Lockhart for inviting us-Briggs for recording us and provide our own personal laugh track.-All of you for listening!
Larry McClain gave us so much great knowledge on the Thing About Pam case and the murder of Louis Gumpenberger; we had to split it into two episodes. Join us for the conclusion.This is part 4 only in our 'The Thing About Pam' series.Make sure to go back and listen to Episodes 21, 22, and 23 if you haven't yet.
This week Special Guest Larry McClain joins us as we discuss his work on the The Thing About Pam case and the murder of Louis Gumpenberger. Learn about the evidence he discovers that demonstrates premeditation. We also get some insider knowledge on the Betsy Faria murder.This is Part 3 only in our The Thing About Pam Series.Make sure to check out S1 E21 and S1 E22 if you haven't yet.
Dive into Russ Faria's retrial by exploring the digital evidence that was finally admitted and subsequently led to his acquittal. How did Pam Hupp's digital trail shift the trial's outcome? Tune in to find out.This is Episode 2 in our 'The Thing About Pam Series'
The Thing About Pam Hupp — she’s tied to the murder of Betsy Faria and the wrongful guilty verdict in Russ Faria’s first trial. In this episode, we break down the digital evidence, including key cell phone data that was thrown out.This is Part 1 Only.
Discover how business email compromise cases exploit human trust rather than relying solely on technology. We explore the mechanics of BEC attacks, common entry points, and immediate actions organizations should take.With special guest Jamie Mamroe.
Elsbeth battles AI being used to manipulate crime reporting, and we're discussing how traces left behind on a laptop can be used IRL to determine whodunnit.
A new brute-forcing tool helps examiners get access to the Kik App, which would help the FBI rescue a young girl from human trafficking.
We're sharing never-before-released insider knowledgeabout what happened with the digital evidence in the Casey Anthony trial. This will change EVERYTHING you thought you knew about the Casey Anthony trial. These lessons learned are a must for every forensic examiner.This is part 6 only.This is the final Casey Anthony Episode.
We've found the missing minute from the Epstein Jail video. We discuss the 13 new files we used to find it and what it means. BONUS: We discuss 2 jail videos that are STILL MISSING.See more on the blog at https://blog.siliconprairiecyber.com/2025/09/epsteins-missing-minute-found.html
We speak with the digital forensics expert for the defense, Larry Daniel. He reveals the untold stories behind the Casey Anthony trial, including why he didn't testify during the trial.It might not have been known in 2011, but yes, there was a digital forensics expert working behind the scenes to help the defense develop an intriguing strategy when it came to all the digital evidence.Part 5 only.
Discover how a coding error led to a media frenzy in the Casey Anthony case. John Bradley reveals how it all happened, along with how he was caught off guard by the testimony he was asked to provide.
In a bizarre twist, the defense calls the state’s own witnesses to introduce digital evidence, only to drop a bombshell that shakes the world of digital forensics. This episode unpacks what happens when two forensic tools tell two very different stories during the Casey Anthony trial, leaving the courtroom and the experts stunned.Casey Anthony Part 3.Make sure you've listened to Parts 1 and 2.
The Prosecution uses a bizarre tactic to get John Bradley to testify about the infamous Chloroform hit in the browser history in the Casey Anthony trial. We discuss the tactic, Cacheback, and the fallout in this episode.This is Part 2 of our Casey Anthony Episodes.
The Casey Anthony trial had plenty of controversial digital evidence and we're going to dive into it . In Part 1 we focus on the testimony from the OCSO digital forensic experts and a scandalous chloroform picture that was introduced by the State of Florida.
What happened to the missing Epstein footage?3 minutes missing? 6 minutes and 34 seconds missing?Find out what was lost, what was hidden—and how we figured it all out. We break down the timeline, expose the gaps, and reveal how the FBI should have handled the evidence.
We've got the lead digital forensic examiner from the BTK Killer case joining to set the record straight . With a case that is 50+ years old the rumors are plentiful. Find out - Is it fact or fiction? #btkkiller #digitalforeniscs #parsingthetruth #truecrime
The defense strikes back as they put the FBI’s digital forensic examiner in the hotseat during cross-examination. Can the FBI continue demonstrate the Masked Man is guilty of voyeurism, drugging and blackmailing his coworker?Part 3 of 3 Only.
In the second half of the FBI testimony things get intense. Can the expert witness tie the digital evidence to the defendant to prove the chilling charges: voyeurism, drugging an unconscious victim, blackmail, and even impersonation. Part 2 of 3 only,
This FBI criminal case has it all - voyeurism, drugs, blackmail, and even a masked man on a bicycle. This is part 1 of 3 only.
Get the inside scoop on how a digital forensic examiner becomes an expert witness and what their role is during a trial.
Trying to land your first job in digital forensics—but keep hitting dead ends?You're not alone—and you're not out of luck. Join two former FBI Senior Forensic Examiners with over 20 years of experience as they break down exactly what it takes to launch your career.From must-have technical skills and the truth about degree programs to certifications that actually matter—and how to crush the interview—we’re giving you the roadmap to finally get your foot in the door.
In this episode, Stacy Eldridge and Becky Passmore delve into a significant case from 2006 that marked the beginning of Becky's journey as a certified forensic examiner with the FBI. Her skills were immediately put to the test as she was forced to attempt to find and recover a hidden partition that contained the smoking gun. They also discuss the emotional weight of handling sensitive cases involving underage victims, the meticulous process of evidence collection, and the challenges faced in digital forensics. The conversation highlights the importance of thorough analysis, the thrill of uncovering hidden evidence, and the emotional impact of discovering disturbing content. They reflect on the complexities of trial proceedings and the collaborative efforts required to bring justice to victims.
Stacy Eldridge and Becky Passmore delve into the infamous case of the BTK killer, Dennis Rader, exploring how digital forensics played a pivotal role in his capture. They discuss how the digital forensics examiners were able to extract crucial data from a simple purple floppy disk that broke the case wide open more than 30 years after the first murder. The episode also shares the surprising story of a brief encounter between one of the digital forensic examiners and Rader — just months before his arrest.#btk #btkkiller #digitalforensics #dfir
In the inaugural episode of 'Parsing the Truth,' hosts Stacy Eldridge and Becky Passmore introduce their podcast, which blends digital forensics with true crime discussions. They share their extensive backgrounds in the FBI, their training journeys, and the importance of certifications in the field. The hosts emphasize a dispassionate approach to their work, focusing on evidence and facts while maintaining a respectful tone. They also recount memorable experiences from their careers, setting the stage for future episodes that will delve into specific cases and topics in digital forensics.
Join former FBI Senior Forensic Examiners Becky Passmore and Stacy Eldridge as they dig into the world of digital forensics, one byte at a time. Now leading their own consulting firms and educating the next generationof cyber sleuths, these badass babes of digital forensics bring sharp insight, real-world case experience, and a dose of humor to the bits and bytes that build today's investigations. From deep dives into business email compromise andransomware attacks (Becky's specialty) to cracking the complexities of iPhone forensics (Stacy's obsession), this podcast delivers insider knowledge for professionals, students, and true crime techies alike. If you’ve ever wondered what really happens when the digital trail is all that’s left—tune in and start parsing the truth.