On digital forensic readiness in the cloud using a distributed agent-based solution: issues and challenges

被引:19
|
作者
Kebande, Victor R. [1 ]
Venter, H. S. [1 ]
机构
[1] Univ Pretoria, Dept Comp Sci, Pretoria, South Africa
基金
新加坡国家研究基金会;
关键词
forensic science; digital forensic readiness; agent-based solution; botnet; cloud; challenges; issues;
D O I
10.1080/00450618.2016.1194473
中图分类号
DF [法律]; D9 [法律]; R [医药、卫生];
学科分类号
0301 ; 10 ;
摘要
The need to perform digital investigations has, over the years, led to the exponential growth of the field of Digital Forensics (DF). However, quite a number of challenges face the act of proving - for purposes of Digital Forensic Readiness (DFR) - that an electronic event has occurred in cyberspace. The problem that this research addresses involves the challenges faced when an Agent-Based Solution (ABS) is used in the cloud to extract Potential Digital Evidence (PDE) for DFR purposes. Throughout the paper the authors have modified the functionality of an initially malicious botnet to act as a distributed forensic agent to conduct this process. The paper focuses on the general, technical and operational challenges that are encountered when trying to achieve DFR in the cloud environment. The authors finally propose a contribution by assessing the possible solutions from a general, technical and operational point of view.
引用
收藏
页码:209 / 238
页数:30
相关论文
共 50 条
  • [1] Towards a Prototype for Achieving Digital Forensic Readiness in the Cloud Using a Distributed NMB Solution
    Kebande, Victor
    Ntsamo, Hermann Stephane
    Venter, H. S.
    [J]. PROCEEDINGS OF THE 15TH EUROPEAN CONFERENCE ON CYBER WARFARE AND SECURITY (ECCWS 2016), 2016, : 369 - 378
  • [2] Requirements for Achieving Digital Forensic Readiness in the Cloud Environment Using an NMB Solution
    Kebande, Victor
    Venter, Hein
    [J]. PROCEEDINGS OF THE 11TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2016), 2016, : 399 - 406
  • [3] Forensic Readiness for Cloud-Based Distributed Workflows
    Rudolph, Carsten
    Kuntze, Nicolai
    Endicott-Popovsky, Barbara
    [J]. PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON CLOUD SECURITY MANAGEMENT (ICCSM-2013), 2013, : 59 - 67
  • [4] CFRaaS: Architectural design of a Cloud Forensic Readiness as-a-Service Model using NMB solution as a forensic agent
    Kebande, Victor R.
    Venter, H. S.
    [J]. AFRICAN JOURNAL OF SCIENCE TECHNOLOGY INNOVATION & DEVELOPMENT, 2019, 11 (06): : 749 - 769
  • [5] Digital Forensic Readiness in a Cloud Environment
    Sibiya, George
    Fogwill, Thomas
    Venter, H. S.
    Ngobeni, Sipho
    [J]. AFRICON, 2013, 2013, : 426 - 430
  • [6] Infrastructural issues for agent-based distributed learning
    Gorodetskiy, V.
    Karsaev, O.
    Samoilov, V.
    [J]. 2006 IEEE/WIC/ACM INTERNATIONAL CONFERENCE ON WEB INTELLIGENCE AND INTELLIGENT AGENT TECHNOLOGY, WORKSHOPS PROCEEDINGS, 2006, : 3 - +
  • [7] A DISTRIBUTED AGENT-BASED DECISION SUPPORT FOR CLOUD BROKERING
    Amato, Alba
    Venticinque, Salvatore
    [J]. SCALABLE COMPUTING-PRACTICE AND EXPERIENCE, 2014, 15 (01): : 65 - 78
  • [8] Obfuscating a Cloud-Based Botnet Towards Digital Forensic Readiness
    Kebande, Victor
    Venter, Hein
    [J]. PROCEEDINGS OF THE 10TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS-2015), 2015, : 434 - 444
  • [9] Novel digital forensic readiness technique in the cloud environment
    Kebande, Victor R.
    Venter, H. S.
    [J]. AUSTRALIAN JOURNAL OF FORENSIC SCIENCES, 2018, 50 (05) : 552 - 591
  • [10] Agent-Based Approach for Distributed Access Control in Cloud Environments
    Thomas, Manoj V.
    Sekaran, K. Chandra
    [J]. 2013 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2013, : 1628 - 1633