Digital Forensic Analysis of Criminal Evidence in Mobile Devices: A Literature Review

Authors

  • Andy Alessandro Chiroque Adanaque Universidad Tecnológica del Perú UTP - (PE), Perú
  • Jose Manuel Talavera Flores Universidad Tecnológica del Perú UTP - (PE), Perú
  • Víctor Angel Ancajima Miñán Universidad Tecnológica del Perú UTP - (PE), Perú

DOI:

https://doi.org/10.18687/LACCEI2026.1.1.1921

Keywords:

Digital forensics, Mobile devices, Digital evidence, Analysis methodologies, Reliability and validity.

Abstract

Changing the way crime is investigated in the mobile era requires rigor and humanity: recovering the stories stored in phones without compromising their integrity. With that premise, this review sought to identify how effective and reliable current mobile forensic methodologies and tools are, and how they are being used in real investigative contexts. A structured systematic review was conducted using the PICO model, a Scopus search, and a PRISMA flowchart: from 229 records, 20 recent studies were screened and evaluated, examining research designs, methodological frameworks, extraction techniques, and performance by application and operating system. The results reveal an operational consensus: DFRWS and NIST frameworks guide the sequential phases of identification, preservation, acquisition, analysis, and reporting; commercial forensic suites (Cellebrite UFED, Magnet AXIOM, XRY, Oxygen, Belkasoft, MOBILedit) achieve high recovery rates, although with heterogeneous performance depending on the app, version, and encryption; and emerging automation approaches (ML/LLM and multimodal semantic analysis) accelerate triage and improve the correlation of textual, audio, image, and video evidence. Limitations persist, including modern encryption, cloud dependencies, uneven parsers, and explainability issues that affect legal admissibility. In conclusion, the evidence supports an integrated model—“standard framework + validated tool + explainable automation”—sustained by strict chain of custody and reproducible documentation. The review recommends open test datasets, cross-tool validation by case/OS/encryption level, and governance/ethical guidelines that balance investigative efficiency with privacy protection.

Downloads

Published

2026-07-27

License

Creative Commons License

This work is licensed under a Creative Commons Attribution-NonCommercial-ShareAlike 4.0 International License.

LACCEI retains copyright of all published articles under the terms of its copyright transfer agreement. As the copyright holder, LACCEI distributes the articles to the public under the Creative Commons Attribution-NonCommercial-ShareAlike 4.0 International License (CC BY-NC-SA 4.0).

How to Cite

Chiroque Adanaque, A. A., Talavera Flores, J. M., & Ancajima Miñán, V. A. (2026). Digital Forensic Analysis of Criminal Evidence in Mobile Devices: A Literature Review. LACCEI, 1(14). https://doi.org/10.18687/LACCEI2026.1.1.1921

Most read articles by the same author(s)