High-Level Integrated Vie of Digital Forensics
نویسندگان
چکیده
We are living in a world where there is an increasing need for evidence in organizations. Good digital evidence is becoming a business enabler. Very few organizations have the structures (management and infrastructure) in place to enable them to conduct cost effective, low-impact and efficient digital investigations (Sommer, 2005). Digital Forensics (DF) is a vehicle that organizations use to provide good and trustworthy evidence and processes. The current DF frameworks concentrate on reactive investigations, with limited reference to DF readiness and live investigations. However, organisations use DF for other purposes. The paper proposes that DF consists of three components: Proactive (ProDF), Active (ActDF) and Reactive (ReDF). ProDF concentrates on DF readiness and the proactive, responsible use of DF to demonstrate good governance and enhance governance structures. ActDF consider the gathering of live evidence during an ongoing attack with limited live investigation and ReDF deals with the traditional DF investigation. The paper discusses each component and the relationship between the components.
منابع مشابه
Automatically Creating Realistic Targets for Digital Forensics Investigation
The need for computer forensics education continues to grow, as digital evidence is present in more crimes, whether the crimes directly involve computers or not. An essential component of training in computer forensics is hands-on, realistic laboratory assignments. Creating detailed, realistic lab assignments, however, is a difficult task. The “crime” must be played out on the machine, often in...
متن کاملMassively Threaded Digital Forensics Tools
Digital forensics comprises the set of techniques to recover, preserve, and examine digital evidence and has applications in a number of important areas, including investigation of child exploitation, identity theft, counter-terrorism, and intellectual property disputes. Digital forensics tools must exhaustively examine and interpret data at a low level, because data of evidentiary value may ha...
متن کاملAnalyzing registry, log files, and prefetch files in finding digital evidence in graphic design applications
The products of graphic design applications leave behind traces of digital information which can be used during a digital forensic investigation in cases where counterfeit documents have been created. This paper analyzes the digital forensics involved in the creation of counterfeit documents. This is achieved by first recognizing the digital forensic artifacts left behind from the use of graphi...
متن کاملModels of Models: Digital Forensics and Domain-Specific Languages
There are numerous and diverse digital forensics models for driving digital investigative processes. To encompass these diverse models we argue that there is need for two integrated Domain-Specific Languages (DSLs) [5]: a static one and a dynamic one. We attempt to motivate some research directions involving DSLs, digital forensics, and the creation of two descriptive languages for digital fore...
متن کاملThe Proactive and Reactive Digital Forensics Investigation Process: A Systematic Literature Review
Recent papers have urged the need for new forensic techniques and tools able to investigate anti-forensics methods, and have promoted automation of live investigation. Such techniques and tools are called proactive forensic approaches, i.e., approaches that can deal with digitally investigating an incident while it occurs. To come up with such an approach, a Systematic Literature Review (SLR) w...
متن کامل