Abstract'/> Circumventing iOS security mechanisms for APT forensic investigations: A security taxonomy for cloud apps
首页> 外文期刊>Future generation computer systems >Circumventing iOS security mechanisms for APT forensic investigations: A security taxonomy for cloud apps
【24h】

Circumventing iOS security mechanisms for APT forensic investigations: A security taxonomy for cloud apps

机译:绕过iOS安全机制进行APT取证调查:云应用程序的安全分类法

获取原文
获取原文并翻译 | 示例
       

摘要

AbstractMobile devices and apps such as cloud apps are a potential attack vector in an advanced persistent threat (APT) incident, due to their capability to store sensitive data (e.g. backup of private and personal data in digital repositories) and access sensitive resources (e.g. compromising the device to access an organisational network). These devices and apps are, thus, a rich source of digital evidence. It is vital to be able to identify artefacts of forensic interest transmitted to/from and stored on the devices. However, security mechanisms in mobile platforms and apps can complicate the forensic acquisition of data. In this paper, we present techniques to circumvent security mechanisms and facilitate collection of artefacts from cloud apps. We then demonstrate the utility of the circumvention techniques using 18 popular iOS cloud apps as case studies. Based on the findings, we present the first iOS cloud app security taxonomy that could be used in the investigation of an APT incident.HighlightsCircumventing iOS security mechanisms for APT forensic investigations.Advanced persistent threat forensic investigations.Techniques to circumvent SSL/TLS on iOS devices.iOS cloud app security taxonomy.
机译: 摘要 移动设备和应用(例如云应用)由于具有以下功能,在高级持久威胁(APT)事件中是潜在的攻击媒介:存储敏感数据(例如,在数字存储库中备份私人和个人数据)并访问敏感资源(例如,使设备无法访问组织网络)。因此,这些设备和应用程序是数字证据的丰富来源。能够识别传输到设备或从设备存储的具有法医学意义的伪像至关重要。但是,移动平台和应用程序中的安全机制可能会使取证数据复杂化。在本文中,我们提出了规避安全机制并促进从云应用程序收集伪像的技术。然后,我们以18个流行的iOS云应用为例,演示了规避技术的实用性。基于这些发现,我们提出了可用于调查APT事件的第一个iOS云应用安全分类。 突出显示 •• 绕过iOS安全机制进行APT取证调查。 高级持续威胁法医调查。 在iOS上规避SSL / TLS的技术设备。 iOS云应用安全分类法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号