Forensic Technology
Oxygen Forensic® Detective
Industry-leading all-in-one platform for mobile, cloud, and computer evidence acquisition — used by law enforcement agencies and government bodies in over 150 countries. Operated by a certified Oxygen Forensics Analyst (OFC).
Supported mobile device profiles
Cloud application integrations
Mobile app versions decoded
Countries using the platform
Extraction Capability
Deep Extraction Across Every Device Type
OFD supports physical, logical, and file system extraction modes — giving us the right tool for each device and situation. Every acquisition is performed with the owner's consent and documented to court-admissible standards from the first connection.
- Physical, logical, and file system extraction modes
- iOS and Android device support across all generations
- App-level data extraction including protected containers
- 35,000+ device profiles including obscure and legacy handsets
- Recovery of deleted data artefacts from unallocated storage space
- Full SQLite database reconstruction for third-party app data
Threat Detection
Detect Stalkerware, Spyware & Hidden Profiles
OFD's integrated malware detection identifies commercial stalkerware, covert monitoring tools, and compromised device configurations — producing court-ready findings that name the software, its install date, and the data it accessed.
- Commercial stalkerware: mSpy, FlexiSpy, Cocospy, Hoverwatch, Cerberus
- Hidden Mobile Device Management (MDM) profile discovery
- Jailbreak and root detection with artefact logging
- Rogue accessibility service and background process identification
- Password recovery for encrypted containers and archives
- Device integrity verification with tamper indication
Get in Touch
Not Sure Where to Start?
Call for a free, no-obligation assessment of your situation. We'll tell you honestly what's possible and what it costs — before you commit to anything.
Platform Coverage
Every Device. Every Cloud. Every Platform.
A single platform covering the full digital evidence landscape — from the oldest Nokia to the latest iPhone, and every major cloud service in between.
iOS, Android, KaiOS, and legacy handsets. Physical, logical, and file system extraction with deleted data recovery.
iCloud, Google, Facebook, Instagram, Dropbox, OneDrive, WhatsApp, Telegram, Snapchat, TikTok, and more.
Full disk imaging, file system analysis, browser artefacts, and user account data from desktop and laptop computers.
Social media, messaging, dating, finance, navigation — including deleted conversation and cache data recovery.
AI-Powered Analysis
Image Categorisation, Timeline & Link Analysis
OFD's AI tools dramatically accelerate case review — automatically sorting thousands of images, mapping communications across timelines, and identifying relationships between contacts and accounts that would take days to trace manually.
- Automated image and video categorisation by content type
- Facial recognition with user-defined face sets for rapid identification
- Visual communication timeline mapping across all messaging platforms
- Link analysis — contact and account relationship visualisation
- OCR text extraction from images, screenshots, and scanned documents
- Automated translation for non-English language content
- Dynamic geolocation mapping with court-export capability
Data Sources
Every Evidence Source. One Unified Case File.
Beyond devices and cloud accounts, OFD ingests data from a broad range of modern evidence sources — consolidating everything into a single searchable case file that forms the foundation of your court-ready report.
Evidence Integrity
Forensic Controls on Every Case
In Australian courts, admissibility depends on how evidence was obtained — not just what it shows. Every acquisition we perform follows a documented, reproducible methodology designed to withstand cross-examination.
Hardware Write Blockers
Physical write-block devices are interposed between evidence and our forensic workstation — the original data cannot be altered during acquisition.
MD5 & SHA-256 Hash Verification
Cryptographic hash values are generated at acquisition and re-verified after imaging — mathematically proving the forensic copy is an exact duplicate.
Isolated Acquisition Environment
All extractions are performed on a dedicated forensic workstation isolated from the internet during the acquisition process to prevent contamination.
Full Audit Trail
Every action taken on evidence is automatically logged with timestamps, operator identity, and tool version — all reproduced verbatim in the final report.
Get in Touch
Start Your Confidential Enquiry
Tell us briefly about your situation. We respond within one business day with an honest assessment — no obligation to proceed.
+61 499 475 408
Mon–Fri, business hours AEST
Nerang, Gold Coast QLD
Serving all of Australia & New Zealand