Challenges in Digital Forensic Research R.I. Ferguson - - PowerPoint PPT Presentation

challenges in digital forensic research
SMART_READER_LITE
LIVE PREVIEW

Challenges in Digital Forensic Research R.I. Ferguson - - PowerPoint PPT Presentation

Challenges in Digital Forensic Research R.I. Ferguson ian.ferguson@abertay.ac.uk 2 minute intro to Digital Forensics Some challenges scale cloud the encryption boundary anti-forensics Digital Forensics in 2 mins


slide-1
SLIDE 1

Challenges in Digital Forensic Research

R.I. Ferguson

ian.ferguson@abertay.ac.uk

  • 2 minute intro to Digital Forensics
  • Some challenges
  • scale
  • cloud
  • the encryption boundary
  • anti-forensics
slide-2
SLIDE 2

Digital Forensics in 2 mins

  • Sub-discipline of computer security ...sort of
  • Cybercrime taxonomy
  • “With”, “by”, “for”, etc.
  • Goal: re-creation of events from recovered

evidence

  • ACPOS guidelines
  • Lifecycle of an investigation
  • Tools/methodology
slide-3
SLIDE 3

Challenges - Scale

  • Case workload
  • Storage device capacity
  • Number
  • people
  • Devices
  • Speed of evolution
  • Of digital environment
  • Of threat
slide-4
SLIDE 4

Challenges – the cloud

  • Where's the data?

– – May not be in/on one disk/server/country/continent – - jurisdiction – - holatilty – - heterogeneity –

slide-5
SLIDE 5

The encryption boundary

processor

system RAM disk Internet encrypted data un-encrypted data Video RAM

slide-6
SLIDE 6

Anti-forensics

  • Better

cybercriminals

  • Legality of using

hacker techniques in investigation?

International Terrorism, people trafficking, drug smuggling, major financial fraud Burglary, car crime Vandalism, pickpocketing Rape, murder Organisation/ intelligence amount

slide-7
SLIDE 7

Questions?

ian.ferguson@abertay.ac.uk