Cloud forensics: Technical challenges, solutions and comparative analysis

被引:65
|
作者
Pichan, Ameer [1 ]
Lazarescu, Mihai [1 ]
Soh, Sie Teng [1 ]
机构
[1] Curtin Univ, Dept Comp, Perth, WA 6102, Australia
关键词
Cloud computing; Cloud forensics; Cloud service provider; Cloud customer; Digital forensics; Digital evidence; Service level agreement; Amazon EC2; TRUST; SERVICE; TOOLS;
D O I
10.1016/j.diin.2015.03.002
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud computing is arguably one of the most significant advances in information technology (IT) services today. Several cloud service providers (CSPs) have offered services that have produced various transformative changes in computing activities and presented numerous promising technological and economic opportunities. However, many cloud customers remain reluctant to move their IT needs to the cloud, mainly due to their concerns on cloud security and the threat of the unknown. The CSPs indirectly escalate their concerns by not letting customers see what is behind virtual wall of their clouds that, among others, hinders digital investigations. In addition, jurisdiction, data duplication and multi-tenancy in cloud platform add to the challenge of locating, identifying and separating the suspected or compromised targets for digital forensics. Unfortunately, the existing approaches to evidence collection and recovery in a non-cloud (traditional) system are not practical as they rely on unrestricted access to the relevant system and user data; something that is not available in the cloud due its decentralized data processing. In this paper we systematically survey the forensic challenges in cloud computing and analyze their most recent solutions and developments. In particular, unlike the existing surveys on the topic, we describe the issues in cloud computing using the phases of traditional digital forensics as the base. For each phase of the digital forensic process, we have included a list of challenges and analysis of their possible solutions. Our description helps identifying the differences between the problems and solutions for non-cloud and cloud digital forensics. Further, the presentation is expected to help the investigators better understand the problems in cloud environment. More importantly, the paper also includes most recent development in cloud forensics produced by researchers, National Institute of Standards and Technology and Amazon. (C) 2015 Elsevier Ltd. All rights reserved.
引用
收藏
页码:38 / 57
页数:20
相关论文
共 50 条
  • [1] Challenges and Solutions in Cloud Forensics
    Ali, Syed Ahmed
    Memon, Shahzad
    Sahito, Farhan
    [J]. PROCEEDINGS OF 2018 2ND INTERNATIONAL CONFERENCE ON CLOUD AND BIG DATA COMPUTING (ICCBDC 2018), 2018, : 6 - 10
  • [2] A survey on cloud forensics challenges and solutions
    Simou, Stavros
    Kalloniatis, Christos
    Gritzalis, Stefanos
    Mouratidis, Haralambos
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (18) : 6285 - 6314
  • [3] Cloud Forensics: A Review of Challenges, Solutions and Open Problems
    Alqahtany, Saad
    Clarke, Nathan
    Furnell, Steven
    Reich, Christoph
    [J]. 2015 INTERNATIONAL CONFERENCE ON CLOUD COMPUTING (ICCC), 2015, : 88 - 96
  • [4] A Systematic Survey on Cloud Forensics Challenges, Solutions, and Future Directions
    Manral, Bharat
    Somani, Gaurav
    Choo, Kim-Kwang Raymond
    Conti, Mauro
    Gaur, Manoj Singh
    [J]. ACM COMPUTING SURVEYS, 2020, 52 (06)
  • [5] Cloud Forensic Technical Challenges and Solutions: A Snapshot
    Martini, Ben
    Choo, Kim-Kwang Raymond
    [J]. IEEE CLOUD COMPUTING, 2014, 1 (04): : 20 - 25
  • [6] Challenges of Cloud Log Forensics
    Alobaidli, Hanan
    Nasir, Qassim
    Iqbal, Asif
    Guimaraes, Mario
    [J]. PROCEEDINGS OF THE SOUTHEAST CONFERENCE ACM SE'17, 2017, : 227 - 230
  • [7] The Challenges on Cloud Computing Forensics
    Feng, Xiaohua
    Hashish, Mohamed
    [J]. 2012 INTERNATIONAL CONFERENCE ON FUTURE COMMUNICATION AND COMPUTER TECHNOLOGY (ICFCCT 2012), 2012, : 149 - 152
  • [8] Cloud Forensics: Issues and Challenges
    Shah, J. J.
    Malik, L. G.
    [J]. 2013 SIXTH INTERNATIONAL CONFERENCE ON EMERGING TRENDS IN ENGINEERING AND TECHNOLOGY (ICETET 2013), 2013, : 138 - 139
  • [9] Cloud Forensics Solutions: A Review
    Simou, Stavros
    Kalloniatis, Christos
    Kavakli, Evangelia
    Gritzalis, Stefanos
    [J]. ADVANCED INFORMATION SYSTEMS ENGINEERING WORKSHOPS, 2014, 178 : 299 - 309
  • [10] Digital Forensics Research on Cloud Computing: An investigation of Cloud Forensics Solutions
    Morioka, Erni
    Sharbaf, Mehrdad S.
    [J]. 2016 IEEE SYMPOSIUM ON TECHNOLOGIES FOR HOMELAND SECURITY (HST), 2016,