• Title/Summary/Keyword: 디지털포렌식 전문가

Search Result 13, Processing Time 0.022 seconds

Fuzzy Expert System for Detecting Anti-Forensic Activities (안티 포렌식 행위 탐지를 위한 퍼지 전문가 시스템)

  • Kim, Se-Ryoung;Kim, Huy-Kang
    • Journal of Internet Computing and Services
    • /
    • v.12 no.5
    • /
    • pp.47-61
    • /
    • 2011
  • Recently, the importance of digital forensic has been magnified because of the dramatic increase of cyber crimes and the increasing complexity of the investigation of target systems such as PCs, servers, and database systems. Moreover, some systems have to be investigated with live forensic techniques. However, even though live forensic techniques have been improved, they are still vulnerable to anti-forensic activities when the target systems are remotely accessible by criminals or their accomplices. To solve this problem, we first suggest a layer-based model and the anti-forensic scenarios which can actually be applicable to each layer. Our suggested model, the Anti-Forensic Activites layer-based model, has 5 layers - the physical layer, network layer, OS layer, database application layer and data layer. Each layer has possible anti-forensic scenarios with detailed commands. Second, we propose a fuzzy expert system for effectively detecting anti-forensic activities. Some anti-forensic activities are hardly distinguished from normal activities. So, we use fuzzy logic for handling ambiguous data. We make rule sets with extracted commands and their arguments from pre-defined scenarios and the fuzzy expert system learns the rule sets. With this system, we can detect anti-forensic activities in real time when performing live forensic.

Windows Registry Digital Evidence Collector Development (윈도우 레지스트리 증거수집기)

  • Choi, Gyu-Ha;Shin, Yea-Chan;JO, Youn-Seok
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2017.11a
    • /
    • pp.246-249
    • /
    • 2017
  • 우리는 ICT의 발전과 디지털 장치의 빠른 대중화 속도에 의하여 유비쿼터스가 현실화 되고 있는 사회에 살고 있다. 그러나 빠른 속도로 기술이 발전하는 반면에 사이버 범죄의 대한 인식과 대처는 발달의 속도를 따라가지 못하고 있다. 사이버 범죄는 다양한 방법으로 늘어가고 그에 따른 피해가 커지고 있지만 일반인들은 그에 따른 대처를 하지 못하고 전문가에게만 의존하고 있다. 따라서 우리는 일반 사용자도 쉽게 사용할 수 있는 레지스트리 분석기를 개발하여 디지털 포렌식 관점에서 유용한 정보를 제공하고 개인정보 침해 및 각종 디지털 범죄에 대한 인식을 개선시켜 보려고 한다.

A Digital Forensic Procedure and Service of Ship with VTS and Navigation Device (VTS 및 소형선박 항해장비의 항적추출을 통한 디지털 포렌식 절차 및 모델서비스)

  • Lee, Byung-Gil;Choi, Byeong-Chel
    • Proceedings of the Korean Institute of Navigation and Port Research Conference
    • /
    • 2019.11a
    • /
    • pp.243-245
    • /
    • 2019
  • In the VTS, the predictions of vessel mobility and situation awareness of maritime environment are basic function. In recent years, pilotage information is an essential aware element of VTS personnel for vessel traffic management. So, we designed the structure of pilotage information service with VTS and tested in real environment. In the future, similar pilotage information can be used as a useful VTS service.

  • PDF