Skip to content
BLACKSTONEINTELLIGENCE GROUP

Cybercrime & Digital Forensics

Understanding what happened, in evidential order

Cyber incidents generate scattered fragments: messages, logs, transfers, screenshots and half-remembered timings. Our work is to preserve, organize and interpret that material so the sequence of events becomes clear.

Matters We Support

Cyber-enabled incidents and offenses

Online fraud

Deceptive platforms, fraudulent offers and misrepresented investments.

Account compromise

Unauthorized access to email, financial or business accounts.

Phishing

Credential-harvesting messages, spoofed domains and lookalike infrastructure.

Business email compromise

Redirected payments and altered supplier instructions.

Ransomware-related incidents

Investigative support alongside your incident-response and legal advisers.

Digital impersonation

Fake profiles, cloned identities and misuse of a name or brand.

Malicious websites

Domain, hosting and infrastructure research on sites used in a scheme.

Data theft concerns

Assessment of what may have been exposed and how it is being used.

Online harassment and threats

Structured documentation of conduct across platforms.

Digital forensics as an investigative discipline

Forensic value depends on handling. Material that is copied carelessly, edited, or collected without a record of where it came from becomes far harder to rely on later. We advise on preservation first, then work from what has been preserved.

Our reviews focus on interpretation: what a set of email headers indicates about message routing, how access events align with a payment instruction, whether a timeline is internally consistent, and which records held by third parties would resolve remaining questions. Findings are attributed to specific artefacts so that another examiner could retrace them.

Working alongside your other advisers

We are frequently engaged in parallel with incident-response teams, insurers and counsel. We are careful not to duplicate or interfere with their work, and where a matter is under investigation by an authority we support that process rather than running alongside it.

Forensic and analytical work

  • Evidence preservation guidance at the earliest possible stage
  • Structured review of digital information provided by the client
  • Email header and message metadata analysis
  • Timeline reconstruction across systems, accounts and communications
  • Documentation of access events and payment instructions
  • Capture and indexing of publicly available online material
  • Reporting that records method, source and limitation for each finding

Clear Boundaries

What we will not do

Lawful method is not a limitation on quality — it is what makes findings usable.

Blackstone Intelligence Group does not engage in unauthorized hacking, password theft, illegal surveillance, malware deployment, or unlawful access to accounts or systems. We do not purchase stolen data, and we do not interfere with active law-enforcement investigations.

New Claim

File a new claim

Submit a short, confidential outline of your matter. We will tell you honestly whether investigative work is realistic before anything is agreed.

  • Reviewed by an investigator, not an automated system.
  • No credentials, private keys or seed phrases — ever.
  • No obligation, and no guaranteed outcome is implied.

Start a new claim

Give a general outline only at this stage. Never include passwords, private keys, seed phrases, account credentials, card numbers or identity documents in this form.

Discuss a cyber incident confidentially

If an incident is ongoing, contact your emergency services, financial institution and cybersecurity advisers first. We can then help clarify and document what occurred.