Email Tagging or Tags plays a significant role in email forensics process while handling a bulk dataset. An evidence tag is used in forensic investigation for digital data classification. It helps to separate the evidence data as important with the investigative point of view.
For example: While examining the files with a large number of emails, sometimes examiners find few emails having crucial data in it. Then, the investigator can mark the data as “Important” using Tagging Label. This label will help the investigator to categorize the suspected emails at one place.
"Add Tags" to Organize Emails and Perform
Investiation Effectively
Tagging is the process to categorize evidence email data or other items using any word or phrase as “Tags”. Tags/Labels help the investigators to identify particular data in a large database or during a busy task without spending a lot of time. Most commonly, tags are created by the user to organize and access data more precisely.
In a forensic investigation, email tagging feature helps the investigators to classify or categorize the suspected or evidential data. The primary purpose of forensic evidence tags is to identify the marked items for further investigation. That is, if there are multiple files present in the database which can be used as evidence, then, files can be tagged under a single data tag. It will help the investigators to access the set of files using the single tag.
Email tagging software feature has now been added in the MailXaminer so that users can tag & categorize the emails as per their requirement during the investigation. Users can simply attach a word or phrase to tag any suspected email with advanced Email Forensics Software.
To do digital data classification with forensic evidence tags feature of email forensics software, right click on an email. Now, choose the Add Tag option from the list.
If the investigator wishes to tag multiple emails at a time, they can select the emails and click on Add Tag button on the navigation bar.
After clicking on Add Tag option, users can either select the existing tag or create a new tag to categorize the selected email data. To create the new tag for email tagging, click on the Add Tag option.
User can also Edit or Delete the existing tags in the software selecting the tag and clicking on the appropriate option.
After clicking on Add Tag option, a window will pop-up to create new forensic evidence tag. Provide the Tag Name and Tag Description in the given fields.
Now, select any tag by simply clicking on it. Then, click on the OK button.
To view the tagged emails in the software, go to Show Custodian Panel in the navigation bar.
Here, select the Tags tab. Now, select the tag from the list to view the emails. All the email files related to the selected tag will be displayed.