This document provides an introduction to digital forensics concepts and techniques. It discusses forensic principles like avoiding contamination, acting methodically, and maintaining a chain of evidence. It also describes how to perform stand-alone digital forensics on a single computer by recovering deleted files, using encryption/decryption, and searching for files/phrases. The document discusses tools for finding information on storage drives and networks.