Email Tagging or Tags plays a significant role in email forensics process while handling a bulk dataset. An evidence tag is used in forensic investigation for digital data classification. It helps to separate the evidence data as important with the investigative point of view.
For example: While examining the files with a large number of emails, sometimes examiners find few emails having crucial data in it. Then, the investigator can mark the data as “Important” using Tagging Label. This label will help the investigator to categorize the suspected emails at one place.
"Add Tags" to Organize Emails and Perform
Tagging is the process to categorize evidence email data or other items using any word or phrase as “Tags”. Tags/Labels help the investigators to identify particular data in a large database or during a busy task without spending a lot of time. Most commonly, tags are created by the user to organize and access data more precisely.
In a forensic investigation, email tagging feature helps the investigators to classify or categorize the suspected or evidential data. The primary purpose of forensic evidence tags is to identify the marked items for further investigation. That is, if there are multiple files present in the database which can be used as evidence, then, files can be tagged under a single data tag. It will help the investigators to access the set of files using the single tag.
Email tagging software feature has now been added in the MailXaminer so that users can tag & categorize the emails as per their requirement during the investigation. Users can simply attach a word or phrase to tag any suspected email with MailXaminer.
To do digital data classification with forensic evidence tags feature of email forensics software. Select the email, and then right click on selected email. Now, choose the “Tag” option from the list. It will provide two options: “Add Tag" and "Remove Tag”.
After clicking on “Add Tag” option, users can either select the existing tag or create a new tag to categorize the selected email data. To create the new tag for email tagging, click on the “Create” option.
After clicking on “Create” option, a window will pop-up to create new forensic evidence tag. Provide the Tag Name, Tag Description in the given fields. Also, the user can add “Nest Tag” under any the primary tag for proper organization.
After creating a new tag, select the tag by putting a mark check in the box. Then, click on the “Save” button.
After the completion of email tagging process, users can view the tagged files with highlighted tags in the email tab.
Under the “Tagging” section, users can view all the tagged files. To view the email files tagged with the specific tag, user can select the tag from the “Tags List”. All the email files related to the selected tag will be displayed.