Smartphones as Distributed Witnesses for Digital Forensics

نویسندگان

  • Heloise Pieterse
  • Martin Olivier
چکیده

Smartphones have become an integral part of people's lives during the last few years. Their wide range of capabilities and support of additional applications cause a wealth of information to be stored on these devices. Although tools are available to extract and view the data stored on smartphones, there is currently no comprehensive process that allows for event reconstruction using the collected data. The large volume of data collected from the smartphones come in the structured format of SQLite databases and therefore can be easily transformed. To perform event reconstruction, the various SQLite databases need to be integrated and this is accomplished by using existing knowledge of distributed databases. This paper proposes a new process, called the Mobile Event Reconstruction Process, which allows for the reconstruction of events by querying the integrated SQLite databases collected from multiple smartphones. The outcome of the Mobile Event Reconstruction Process creates a detailed account of the activities that took place before, during and after an incident.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Forensic Analysis of YAFFS2

In contrast to traditional file systems designed for hard disks, the file systems used within smartphones and embedded devices have not been fully analyzed from a forensic perspective. Many modern smartphones make use of the NAND flash file system YAFFS2. In this paper we provide an overview of the file system YAFFS2 from the viewpoint of digital forensics. We show how garbage collection and we...

متن کامل

کاربرد رایانه‌های جیبی و تلفن‌های هوشمند در دسترسی به اطلاعات سلامت

Background and Aim: Today, one of the challenges of doctors is how they can access medical information as quick as possible. Personal Digital Assistants (PDAs) and Smartphones are such information technologies that can be used to access health information. This study aimed to review the most important uses of Personal Digital Assistants and Smartphones in medicine and in accessing health inform...

متن کامل

Network Forensics Framework Development using Interactive Planning Approach

Integrated Digital Forensics Investigation Framework (IDFIF) is a method of investigation of a general nature. IDFIF evolved into IDFIF version 2 that is a method of treatment focuses on smartphones. IDFIF v2 can not be applied to network investigation it is necessary to develop a version 3 IDFIF focused on network forensics. This research is the development of network forensics framework using...

متن کامل

Computer Forensics using Bayesian Network: A Case Study

Like the traditional forensics, computer forensics involves formulation of hypotheses grounding on the available evidence or facts. Though digital evidence has been statutory witnesses for a span of time, it is a controversial issue that conclusions drawn from revealed digital evidence are subjective views without scientific justifications. There is an escalating perception that computer forens...

متن کامل

Appendix 1: Challenges in Software Quality Forensics and Litigation - A Case Study

Software forensic experts are called upon not only to perform authorship analysis and software copyright infringement forensics but also to perform software quality forensics. Because the prime evidence in such cases also are digital (in the form of software, databases etc.), the judiciary too often engages software forensic practitioners as expert witnesses to arrive at a considered judgment. ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2014