Pregled bibliografske jedinice broj: 1052607
Anti-computer forensics
Anti-computer forensics // Anti-computer forensics
Opatija, Hrvatska, 2017. str. 1233-1240 (predavanje, domaća recenzija, cjeloviti rad (in extenso), stručni)
CROSBI ID: 1052607 Za ispravke kontaktirajte CROSBI podršku putem web obrasca
Naslov
Anti-computer forensics
Autori
Gruičić, Savina ; Hausknecht, Krešimir
Vrsta, podvrsta i kategorija rada
Radovi u zbornicima skupova, cjeloviti rad (in extenso), stručni
Izvornik
Anti-computer forensics
/ - , 2017, 1233-1240
Skup
40th International Convention on Information and Communication Technology, Electronics and Microelectronics, MIPRO 2017, Opatija, Croatia, May 22-26, 2017. IEEE 2017, ISBN 978-953-233- 090-8
Mjesto i datum
Opatija, Hrvatska, 22.05.2017. - 26.05.2017
Vrsta sudjelovanja
Predavanje
Vrsta recenzije
Domaća recenzija
Ključne riječi
information , obfuscation , artefacts , antiforensics , digital forensics
Sažetak
Generally speaking, anti-computer forensics is a set of techniques used as countermeasures to digital forensic analysis. When put into information and data perspective, it is a practice of making it hard to understand or find. Typical example being when programming code is often encoded to protect intellectual property and prevent an attacker from reverse engineering a proprietary software program. Through this paper the focus will be on anti- forensics methods which in sense is how information obfuscation is affecting digital forensic investigation. The paper will describe some of the many anti-forensics methods used under the broad classifications of data hiding, artefact wiping, trail obfuscation and finally attacks on the forensic tools themselves. With any modern-day investigation relying more and more on digital forensics, investigators are required to deal with antiforensics methods on a daily basis. This paper will explore the challenges investigators and forensic practitioners are facing when conducting investigations. The methods used will be separated into low-tech and high-tech techniques, how they are being used, how they are affecting digital forensic investigation and what the mitigation possibilities are. Focus will be on hightech techniques that will not stop the investigation but rather prolong or make the process extremely time consuming and therefore not possible to complete in a timely manner or be cost effective.
Izvorni jezik
Engleski
Znanstvena područja
Računarstvo, Informacijske i komunikacijske znanosti
POVEZANOST RADA