Almost any electronic device that stores or processes data can become a source of digital evidence. The most common include:
- Computers & laptops (Windows, macOS, Linux)
- **Smartphones & tablets (iPhone, Android, iPad)
- External drives, USB sticks, memory cards
- Servers (on-premise, virtual, cloud – AWS, Azure, Google, OVH, etc.)
- Cloud accounts (Google Drive, iCloud, OneDrive, Dropbox, corporate Office 365/GSuite)
- Industrial control systems (OT/ICS) – PLC, SCADA, DCS, HMI, historians
- IoT & smart devices (cameras, smart TVs, voice assistants, GPS trackers, wearables)
- CCTV systems & dash cams
- Car infotainment & navigation systems
- Printers, routers, NAS devices
In practice, I have successfully extracted probative evidence from all of the above categories — sometimes even from devices that the owner believed had been completely wiped.