首页> 外文会议>Pacific Asia workshop on intelligence and security informatics >Differentiating the Investigation Response Process of Cyber Security Incident for LEAs
【24h】

Differentiating the Investigation Response Process of Cyber Security Incident for LEAs

机译:区分LESs网络安全事件的调查响应过程

获取原文

摘要

The number of cybercrime involving digital evidence will continue to increase as Internet become more intertwined in society. As criminals deny committing crime, Law Enforcement Agencies (LEAs) are hindered by the limited processing capabilities of human analysis. This paper presents a practical digital forensics framework of exploring ISO/IEC 27043: 2015 activities to lessen the caseload burden. It provides a suggestion for applying the Helix3 function to meet the need of incident investigation processes at scene or lab. While live investigative response at scene puts emphasis on finding actionable intelligence immediately, dead forensic analysis at lab pays great attention to reconstructing the case and conducting cross-examination to find the truth. Both are critical in the investigation response of cyber security incident.
机译:随着互联网与社会的交织越来越紧密,涉及数字证据的网络犯罪数量将继续增加。由于罪犯否认犯罪,因此执法机构(LEA)受人类分析能力有限的阻碍。本文提出了一个实用的数字取证框架,旨在探索ISO / IEC 27043:2015活动以减轻案件负担。它为应用Helix3功能提供了建议,以满足现场或实验室中事件调查过程的需要。现场的现场调查响应着重于立即寻找可采取行动的情报,而实验室的死法医学分析则非常注重重建案件和进行盘问以发现真相。两者对于网络安全事件的调查响应都是至关重要的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号