When time is of the essence and you are tasked with reviewing evidence that you suspect resides on a specific app or in a cloud source, learn how to perform a full-file system selective extraction. Understand how you can determine if a device is worth investigating based on the profile and properties, see how you can pick and choose the application you want to review. Decode the data and present it in its native form with the Virtual Analyzer app simulator. We will demonstrate how you can use the cloud tokens retrieved to access SnapChat data including SnapChat MyEyes only.