首页> 外文会议>International Conference in Information Security and Digital Forensics >Anti-Forensic Tool Use and Their Impact on Digital Forensic Investigations: A South African Perspective
【24h】

Anti-Forensic Tool Use and Their Impact on Digital Forensic Investigations: A South African Perspective

机译:反法医刀具使用及其对数字法医调查的影响:南非观点

获取原文

摘要

Digital evidence is becoming an integral part of most cases presented to court. From computers, to mobile phones, ATMs and surveillance cameras, our daily life is so inextricably entwined with technology that it is difficult to find court cases where technology plays no part. Thus the responsibility placed on a Digital Forensics (DF) practitioner to present usable evidence to a court is increasing fast. However, potential criminals have equally compelling reasons to prevent DF practitioners from getting their hands on information of probative value and use tools and methods known as Anti-Forensics (AF). The purpose of this study is to identify the abilities of DF practitioners to identify the impact that AF has on their active investigations. We created a research model that attempts to identify all the factors and constructs that impact the AF phenomenon. This model was then used to develop a survey instrument to gather empirical data from South African DFs. We found that whilst South African DF practitioners perceive DF as having an impact on their investigations, they also perceive electronic evidence as forming only part of the evidence presented to court, and that some usable evidence will generally remain. Unfortunately, we found also that most DF practitioners in South Africa are well versed only in the more commonly known AF techniques whilst not rating their abilities on more complex techniques well. Finally, most DF practitioners appear not to actively attempt to identify AF techniques as part of their investigations. This combined with a lack of understanding of more complex AF techniques could leave South African DF practitioners exposed by missing important evidence due to lack of technical proficiency. The research and its findings should be of benefit to academia and practicing DF investigators with a view to assisting them better prepare for the onslaught of AF.
机译:数字证据正成为大多数案件的组成部分。从计算机,到移动电话,ATM和监控摄像头,我们的日常生活如此密不可分地缠绕在技术中,很难找到技术缺乏任何部分的法庭案例。因此,在数字取证(DF)从业者上履行可用证据对法院的责任正在增加。然而,潜在的罪犯具有同样令人信服的理由,以防止DF从业者掌握原例价值的信息,并使用工具和称为反上取证(AF)的方法。本研究的目的是识别DF从业人员确定AF对其积极调查的影响的能力。我们创建了一项研究模式,试图确定影响AF现象的所有因素和构造。然后,该模型用于开发调查仪器,从南非DFS收集经验数据。我们发现,虽然南非DF从业人员认为DF对其调查产生影响,但他们也认为电子证据只形成由法院提出的一部分证据,并且一般将留下一些可用的证据。不幸的是,我们发现,南非的大多数DF从业者才能在更常见的AF技术中融化,同时没有对更复杂的技术进行更好的能力。最后,大多数DF从业者似乎不会积极尝试识别AF技术作为其调查的一部分。这与缺乏对更复杂的AF技术的理解可以让南非DF从业人员由于缺乏技术熟练程度而缺少重要的证据。该研究及其调查结果应该有利于学术界,并练习DF调查人员,以帮助他们更好地为AF的冲击做好准备。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号