首页> 外文会议>International Conference on Digital Signal Processing >A new forensic model and its application to the collection, extraction and long term storage of screen content off a memory dump
【24h】

A new forensic model and its application to the collection, extraction and long term storage of screen content off a memory dump

机译:一种新的法医模型及其在存储器转储中收集,提取和长期存储的应用程序

获取原文

摘要

In this paper we show how to extract graphics content within a memory dump of a windows-based system. This includes the assurance of integrity and authenticity of evidence gathered this way using cryptographic mechanisms. We introduce a forensic data model and investigate different forensic analysis steps within a phase-oriented manner to classify potential forensic methods. Furthermore we discuss approaches for long term preservation for the forensic data acquired from the memory dumps to ensure authenticity and integrity.
机译:在本文中,我们展示了如何在基于Windows的系统的内存转储内提取图形内容。这包括保证使用加密机制收集的诚信和真实性。我们介绍了法医数据模型,并在面向相位的方式内研究了不同的法医分析步骤以对潜在的法医方法进行分类。此外,我们讨论了从内存转储获取的法医数据的长期保存方法,以确保真实性和完整性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号