首页> 外文OA文献 >Novel digital forensic readiness technique in the cloud environment
【2h】

Novel digital forensic readiness technique in the cloud environment

机译:云环境中的新型数字取证准备技术

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

This paper examines the design and implementation of a feasibletechnique for performing Digital Forensic Readiness (DFR) in cloudcomputing environments. The approach employs a modifiedobfuscated Non-Malicious Botnet (NMB) whose functionalityoperates as a distributed forensic Agent-Based Solution (ABS) in acloud environment with capabilities of performing forensic loggingfor DFR purposes. Under basic Service Level Agreements (SLAs), thisproactive technique allows any organization to perform DFR in thecloud without interfering with operations and functionalities of theexisting cloud architecture or infrastructure and the collected filemetadata. Based on the evaluation discussed, the effectiveness ofour approach is presented as the easiest way of conducting DFRin the cloud environment as stipulated in the ISO/IEC 27043: 2015international standard, which is a standard of information technology,security techniques and incident investigation principles andprocesses. Through this technique, digital forensic analysts are ableto maximize the potential use of digital evidence while minimizingthe cost of conducting DFR. As a result of this process, the timeand cost needed to conduct a Digital Forensic Investigation (DFI) issaved. As a consequence, the technique helps the law enforcement,forensic analysts and Digital Forensic Investigators (DFIs) duringpost-event response and in a court of law to develop a hypothesisin order to prove or disprove a fact during an investigative process,if there is an occurrence of a security incident. Experimental resultsof the developed prototype are described which conclude that thetechnique is effective in improving the planning and preparation ofpre-incident detection during digital crime investigations. In spite ofthat, a comparison with other existing forensic readiness models hasbeen conducted to show the effectiveness of the previously proposedCloud Forensic Readiness as a Service (CFRaaS) model.
机译:本文研究了在云计算环境中执行数字取证准备(DFR)的可行技术的设计和实现。该方法采用经过改进的模糊非恶意僵尸网络(NMB),其功能可在acloud环境中用作基于分布式取证代理的解决方案(ABS),并具有执行DFR目的取证记录的功能。在基本服务级别协议(SLA)下,此主动技术允许任何组织在云中执行DFR,而不会干扰现有云体系结构或基础架构以及收集的文件元数据的操作和功能。根据讨论的评估,我们的方法的有效性是ISO / IEC 27043:2015国际标准中规定的在云环境中进行DFR的最简单方法,该标准是信息技术,安全技术以及事件调查的原则和过程的标准。通过这种技术,数字法证分析师能够最大程度地利用数字证据,同时将进行DFR的成本降至最低。由于此过程,节省了进行数字取证调查(DFI)所需的时间和成本。结果,该技术可以在事件发生后的响应过程中以及在法院中,协助执法人员,法证分析师和数字法证研究人员(DFI)提出假设,以便在调查过程中证明或反驳事实。发生安全事件。描述了所开发的原型的实验结果,得出的结论是,该技术可有效地改善数字犯罪侦查中事前检测的计划和准备。尽管如此,已经与其他现有的取证准备模型进行了比较,以显示先前提出的云取证准备即服务(CFRaaS)模型的有效性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号