Logical acquisition and analysis of data from android mobile devices

被引:13
|
作者
Srivastava, Himanshu [1 ,2 ]
Tapaswi, Shashikala [1 ]
机构
[1] ABV Indian Inst Informat Technol & Management, Dept Informat Technol, Gwalior, India
[2] Amazon India Dev Ctr, Software Dev Engn, Hyderabad, Andhra Pradesh, India
关键词
Information security; AFLogical; Android forensics; Linux kernel; Live data; ViaExtract;
D O I
10.1108/ICS-02-2014-0013
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Purpose - The purpose of this paper is to propose an approach that helps in acquisition of live data as well as data stored in the internal/external memory of android mobile device considering that the data on the device are not much altered during the extraction process. Also, the emphasis is laid on testing the validity of existing forensic tools against the data obtained manually and by using this approach. Smartphones have spurred the mobile computing technology, and Android is widely used as an Operating System in these devices. These days, users store most of their personal information like emails, images, contacts etc., on Phones/Tablets as their data would be readily accessible and thus convenient for them. Design/methodology/approach - Android Operating System is built on the Linux Kernel and scripts to extract data from Android Mobile Device with the use of Android Debugging Bridge have been written. The approach is more focused on the logical acquisition of data from devices rather than acquisition using physical methods. Findings - Live data of the Facebook application running on the device can be extracted. Also, the password of the LuksManager application (used to create an encrypted volume on the device), which is stored in the internal memory, is also extracted and identified. Research limitations/implications - The study has been conducted in an academic environment, thereby limiting external validity. Another limitation is the limited edition of some of the software forensics tools that are used. The full access to these software tools are restricted by Law enforcement and Investigation policies. The research provides a different approach which could aid in criminal investigation activities on mobile devices. Practical implications - The devices which have the latest versions of Android not only store messages and mails, but a lot of information about GPS, as well as information about popular applications like Facebook, WhatsApp, etc. This could practically help a lot in criminal investigation. Originality/value - This study is important because very few works have been done on recent versions (Jellybean and Kitkat) of Android. The proposed approach could extract large amounts of information as compared to earlier approaches with the newer versions of Android having larger memory and new features.
引用
收藏
页码:450 / 475
页数:26
相关论文
共 50 条
  • [1] Logical acquisition method based on data migration for Android mobile devices
    Feng, Peijun
    Li, Qingbao
    Zhang, Ping
    Chen, Zhifeng
    [J]. DIGITAL INVESTIGATION, 2018, 26 : 55 - 62
  • [2] Acquisition and analysis of volatile memory from android devices
    Sylve, Joe
    Case, Andrew
    Marziale, Lodovico
    Richard, Golden G.
    [J]. DIGITAL INVESTIGATION, 2012, 8 (3-4) : 175 - 184
  • [3] Forensic Analysis of Android Mobile Devices
    Rao, V. Venkateswara
    Chakravarthy, A. S. N.
    [J]. 2016 INTERNATIONAL CONFERENCE ON RECENT ADVANCES AND INNOVATIONS IN ENGINEERING (ICRAIE), 2016,
  • [4] Data Security Evaluation for Mobile Android Devices
    Khokhlov, Igor
    Reznik, Leon
    [J]. PROCEEDINGS OF THE 20TH CONFERENCE OF OPEN INNOVATIONS ASSOCIATION (FRUCT 2017), 2017, : 154 - 160
  • [5] Android scraping: Accessing personal data on mobile devices
    Munro, Ken
    [J]. Network Security, 2014, 2014 (11) : 5 - 9
  • [6] Stateful Data Usage Control for Android Mobile Devices
    Aliaksandr Lazouski
    Fabio Martinelli
    Paolo Mori
    Andrea Saracino
    [J]. International Journal of Information Security, 2017, 16 : 345 - 369
  • [7] Stateful Data Usage Control for Android Mobile Devices
    Lazouski, Aliaksandr
    Martinelli, Fabio
    Mori, Paolo
    Saracino, Andrea
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2017, 16 (04) : 345 - 369
  • [8] A study of user data integrity during acquisition of Android devices
    Son, Namheun
    Lee, Yunho
    Kim, Dohyun
    James, Joshua I.
    Lee, Sangjin
    Lee, Kyungho
    [J]. DIGITAL INVESTIGATION, 2013, 10 : S3 - S11
  • [9] Data Acquisition and extraction on mobile devices - A Review
    Da Costa, Alessandro Monteiro
    Oliveira De Sa, Alan
    Machado, Raphael C. S.
    [J]. PROCEEDINGS OF 2022 IEEE INTERNATIONAL WORKSHOP ON METROLOGY FOR INDUSTRY 4.0 & IOT (IEEE METROIND4.0&IOT), 2022, : 294 - 299
  • [10] Analysis of data from accelerometers of mobile devices
    Dilie, L. D.
    Emelyanova, E. Y.
    Petrov, V. A.
    Popova, E. V.
    Khokhlov, A. A.
    [J]. 2018 10TH INTERNATIONAL CONGRESS ON ULTRA MODERN TELECOMMUNICATIONS AND CONTROL SYSTEMS AND WORKSHOPS (ICUMT 2018): EMERGING TECHNOLOGIES FOR CONNECTED SOCIETY, 2018,