首页> 外文会议>Innovations in Power and Advanced Computing Technologies >Disk memory forensics: Analysis of memory forensics frameworks flow
【24h】

Disk memory forensics: Analysis of memory forensics frameworks flow

机译:磁盘内存取证:内存取证框架流程分析

获取原文

摘要

We have heard of Cyber Espionage where a spy was able to hide data and go unnoticed virtually. Using some forensics frameworks we can able to hide and retrieve data in any format both in Windows and Linux operating systems. Whatever the data are made to be hidden in the disk, some frameworks are very good at its carving technique which it analyze and give all the parts of the disk or any other memory devices. In this paper I have clearly explained how memory forensics frameworks analyze the memory of the hard disk drives. Some specific utilities are capable and designed specifically only for windows Operating system and at the same way some forensics frameworks are designed specifically for Linux based distributions. Here I have analyzed few frameworks that are currently good in conducting a digital forensic investigation. These frameworks are for a human resources internal investigation where unauthorized investigation into the server, or to select frameworks to conduct new investigation and these frameworks and suits will assist to conduct analysis of memory forensic, forensic analysis of hard drive, forensic imaging, forensic image exploration, forensic imaging and mobile forensics. Such that, they all designed in such a way that it has the features to bring back in whole depth analyzed report of its merits in its technique flow and about what's under the system hood.
机译:我们听说过“网络间谍”活动,其中间谍能够隐藏数据并且几乎未被发现。使用某些取证框架,我们可以在Windows和Linux操作系统中隐藏和检索任何格式的数据。无论将什么数据隐藏在磁盘中,某些框架都非常擅长于其雕刻技术,该技术可以分析并提供磁盘或任何其他存储设备的所有部分。在本文中,我清楚地解释了内存取证框架如何分析硬盘驱动器的内存。一些特定的实用程序仅针对Windows操作系统才具有功能和专门设计的功能,同时,某些取证框架也专门针对基于Linux的发行版而设计。在这里,我分析了一些目前可以很好地进行数字法证研究的框架。这些框架用于人力资源内部调查,在未经授权的情况下对服务器进行调查,或者选择框架进行新的调查,这些框架和诉讼将有助于进行内存法医分析,硬盘法医分析,法医成像,法医图像探索,法医成像和移动法医。这样,他们全都以这样的方式进行设计,使其具有将其在技术流程方面的优点以及系统内幕的优点的整个深度分析报告重新带回来的功能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号