• Title/Summary/Keyword: 수사체제

Search Result 33, Processing Time 0.029 seconds

모바일 포렌식 동향

  • Kim, Dohyun;Lee, Sangjin
    • Review of KIISC
    • /
    • v.26 no.5
    • /
    • pp.22-31
    • /
    • 2016
  • 모바일기기에는 우리 일상생활과 밀접한 데이터가 가장 많이 저장되어 있기 때문에 디지털 포렌식 수사 시 모바일 포렌식의 필요성이 크게 증가하고 있다. 스마트폰 등장 초기부터 현재까지 다양한 모바일 기기의 운영체제와 제품들이 출시되었지만 현재는 안드로이드와 iOS가 전 세계적으로 가장 많이 사용되고 있다. 따라서 본고에서는 모바일 포렌식의 절차, 데이터 수집 기술, 분석 대상 데이터 등의 모바일 포렌식의 동향을 안드로이드와 iOS를 위주로 살펴본다.

Study on File Recovery Based on Metadata Accoring to Linux Kernel (리눅스 커널에 따른 메타데이터 기반 파일 복원 연구)

  • Shin, Yeonghun;Jo, Woo-yeon;Shon, Taeshik
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.29 no.1
    • /
    • pp.77-91
    • /
    • 2019
  • Recent Linux operating systems having been increasingly used, ranging from automotive consoles, CCTV, IoT devices, and mobile devices to various versions of the kernel. Because these devices can be used as strong evidence in criminal investigations, there is a risk of destroying evidence through file deletion. Ext filesystem forensics has been studied in depth because it can recovery deleted files without depending on the kind of device. However, studies have been carried out without consideration of characteristics of file system which may vary depending on the kernel. This problem can lead to serious situations, such as those that can impair investigative ability and cause doubt of evidence ability, when an actual investigation attempts to analyze a different version of the kernel. Because investigations can be performed on various distribution and kernel versions of Linux file systems at the actual investigation site, analysis of the metadata changes that occur when files are deleted by Linux distribution and kernel versions is required. Therefore, in this paper, we analyze the difference of metadata according to the Linux kernel as a solution to this and recovery deleted file. After that, the investigating agency needs to consider the metadata change caused by the difference of Linux kernel version when performing Ext filesystem forensics.

Analysis of an Arson fire of Motor Vehicle (자동차 방화사례의 분석)

  • Lee, Eui-Pyeong
    • Fire Science and Engineering
    • /
    • v.25 no.6
    • /
    • pp.112-119
    • /
    • 2011
  • In this study, a fire cause of setting fire to one's own car to collect the insurance is analyzed. Through a close examination of causes of this car fire, it is suggested to improve current practices and institutions: (1) A collection system of fallen vehicle parts or fire debris in the fire site should be established; (2) A system of providing fire site information in detail should be established when a police station requests National Institute of Scientific Investigation (NISI) to examine causes of vehicle fires; (3) When a burned car is suspected of arson, a fire station and a police station should maintain a mutual cooperation system; (4) Procedures of examining the causes of vehicle arson in National Institute of Scientific Investigation (NISI) should be improved; and (5) Recognition of the examination of fire causes and correlation with analysis equipment should be changed.

A Study on Methods for Capacity Building of Fire Cause Investigation in Fire Stations (소방기관의 화재원인조사 역량 강화 방안에 관한 연구)

  • Lee, Eui-Pyeong
    • Fire Science and Engineering
    • /
    • v.25 no.5
    • /
    • pp.108-118
    • /
    • 2011
  • In this study, strengths related with fire investigation of fire stations are analyzed and methods for the capacity building of their fire cause investigation are suggested. The methods for capacity building of fire cause investigation suggested are focused on using potential and strengths of current fire fighting and enhancing internal capacity rather than reinforcing investigation personnel, organization, and equipment and ensuring investigation power. The methods suggested in this study are as follows. 1) Because fire investigation results are the basis of fire administration, fire marshals should change their awareness of the need of fire investigation; 2) A fire investigation system should be established to ensure statements of people concerned systematically; 3) A substantial system of fire cause investigation should be established to investigate fire scenes more than twice; 4) A substantial system of fire cause investigation should be established to use such materials as CCTV; 5) Extinguishing should be made in consideration of fire cause investigation and a scene preservation system after extinguishing should be established; 6) A fire investigation system should be established in connection with 119 first-aid and rescue teams and 7) Steps to raise the morale of fire investigation staff should be taken.

A Study on the equipment of police's gambling criminal investigation system - Focus on active gambling crime information acquisition - (경찰의 도박범죄수사체제 정비방안에 관한 연구 -적극적인 도박범죄정보 획득 활동을 중심으로-)

  • Kim, Jeong-Gyou;Lee, Hyo-Min
    • Proceedings of the Korea Contents Association Conference
    • /
    • 2006.11a
    • /
    • pp.438-442
    • /
    • 2006
  • Korea society is known as gambling republic. It is very dishonorable name, but do not deny this if know the real condition. Gambling had spread gradually in our society and these trend caused much problems. It is true that confrontation was insufficient extremely in reply than gravity of gambling. Tend to recognize gambling by one of leisure life by effect of lawful gambling so-called such as horse racing, casino. While pernicious evil of gambling to our society, police's confrontation system is not effective. The police does technique investigation to look for and arrest criminal using criminal's fixed means and method and habit. Crime who correspond to technique investigation is prescribing to crime technique mutual assistance data administration rule. Gambling is excepted in technique crime's subject despite is very repeatable and is crime who have habit. The police must improve in gambling criminal investigation system for society public order.

  • PDF

A Study on Efficient Utilization Plan of Interpol to Combat Supranational Crimes (초국가적 범죄의 대응강화를 위한 인터폴의 효율적 활용방안에 관한 연구)

  • Oh, Seiyouen;Song, Hyejin
    • Journal of the Society of Disaster Information
    • /
    • v.10 no.4
    • /
    • pp.559-565
    • /
    • 2014
  • This study provides the basic data for using the connections of Interpol to combat supranational crimes, reflecting domestic and foreign situations, and I'll summarize the countermeasures as follows through the results of this study. First of all, it is necessary to build up the international cooperative system which shares information and technology between nations, through the network formation of Asianpol. Second, a policy of Interpol which maximizes the foreign agents and resident officers in Korea needs to be established. Third, governmental policies and legal measures such as criminal extradition must be available to help the criminal investigations of Interpol quickly and positively. Fourth, there has to be the expansion of budget for securing professional investigators and supporting Interpol to fight supranational crimes by the authority of the government.

A study about Gollyun(昆侖) Choe, Changdae(崔昌大)'s prose theory (곤륜(昆侖) 최창대(崔昌大)의 문장론 연구)

  • Kwon, Jin-ok
    • (The)Study of the Eastern Classic
    • /
    • no.73
    • /
    • pp.9-33
    • /
    • 2018
  • This paper examines the literary theory of Gollyun(昆侖) Choe, Changdae(崔昌大, 1669-1720). He has authored a variety of works, and his works have been recognized in many literatures. Because of this, studying his literature is a meaningful. The theory of poem creation is as follows. It is the basic poem creationism that expresses the feelings that I experienced and felt as it is. The utility is to multiply and control the artist's feelings through his poem. However, the creative theory of being the best writer is different from this. It must be premised on finding from the heart and studying various books. If these qualities was provided, the words are clear and the meaning is condensed. He distinguished between general works and the best works, and presented their own creative theory and discussed their utility. The theory of prose utility is as follows. He emphasizes the importance of communicating with contemporaries and establishing important things of the day and making them easier to understand, without specifying the morality. This is a thoroughly realistic utility theory. In the classical chinese prose's history, 'Sadal(辭達)' and 'Susa(修辭)' were issues. He transcends the recognition of 'Sadal(辭達)' and 'Susa(修辭)' as zero-sum. In addition, he gives priority to the meaning of the writer and emphasizes self-realization, which is in common with other political soron(少論) writers' theories. When creating prose, simplicity and bizarreness were issues. He emphasizes concise writing. However, it can be realized when a writer with high opinion is aware of the reason and raises the core. Through various sources, he has completely rejected Ming(明) dynasty's former and latter seven master(前後七子). However, he did not exclude their work unilaterally, and recognized the work of Chin-Han dynasty(秦漢) and Dang-Song dynasty(唐宋). This is the same as his father Choiseokjung(崔錫鼎). He recognized Chin-Han dynasty(秦漢) and Dang-Song dynasty(唐宋) equally, and sought a simplified and summarized style.

글로벌 인터넷사업자의 개인정보침해에 대한 규제 - 아바타 이론의 제안

  • Park, Whon-Il
    • Review of KIISC
    • /
    • v.21 no.5
    • /
    • pp.21-26
    • /
    • 2011
  • 최근 들어 인터넷사업자들이 웹상에서 제공하는 새로운 서비스가 각국의 개인정보보호 법제에 저촉되는 사례가 늘고 있다 인터넷사업자들이 국경을 넘어 정보를 수집하고 이를 가공처리, 저장하는 과정에서 본인의 동의를 얻지 않거나 개인정보를 익명처리하지 않은 것이 주로 문제가 되고 있다. 본고는 국제적으로 서비스를 하고 있는 대형 인터넷사업자가 프라이버시 침해 혐의를 받고 있는 사례를 알아보고, 무엇이 문제가 되는지 쟁점을 검토하였다. 특히 현지 감독당국이 글로벌 인터넷사업자의 위법사실을 적발하였더라도 해당 사업자가 대리인이나 분신 도구를 통하여 행동한 사실이 없으면 본사에 제게를 가할 수 없는 실정이다. 사이버공간에서는 실제 위반행위자가 없더라도 중대한 개인정보를 침해하는 결과를 가져온다면 영화 <아바타>에서와 같은 해결방법을 모색해볼 수 있다. 아바타는 독자적인 사고나 판단능력이 전혀 없지만, 나비족이 사는 낙원이 지구인에 의하여 파괴될 수 있는 상황에서 아바타와 이를 조종하는 사람들이 한 몸이 되어 나비족과 힘을 합쳐 아름다운 낙원을 지켜낸다. 즉, 인터넷사업자가 국내 실재하지 않더라도 그의 활동결과로 볼 수 있는 침해행위가 발생하고, 그 결과 회복할 수 없는 피해가 발생할 우려가 있으며, 본인과 아바타를 한 몸으로 볼 수 있다면 아바타를 통해 위법행위를 저지른 본사의 책임자를 처벌할 수 있어야 한다. 만일 그 책임자를 특정할 수 없더라도 그의 감독책임이 있는 본사 법인에 책임을 물을 수 있다고 본다. 만일 법원에서 이러한 '아바타 이론'을 수용한다면 국내에서도 외국 본사에 벌금을 과하는 등 처벌이 가능할 것이다. 다만, 해당 인터넷사업자의 반발도 만만치 않을 것이므로 주요국 개인정보 감독기구는 수사정보를 교환하는 등 국제적으로 긴밀한 협조체제를 갖출 필요가 있다.

Timestamp Analysis of Windows File Systems by File Manipulation Operations (파일 조작에 따른 파일 시간 변화 분석)

  • Bang, Je-Wan;Yoo, Byeong-Yeong;Lee, Sang-Jin
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.20 no.3
    • /
    • pp.79-91
    • /
    • 2010
  • In digital forensics, the creation time, last modified time, and last accessed time of a file or folder are important factors that can indicate events that have affected a computer system. The form of the time information varies with the file system, depending on the user's actions such as copy, transfer, or network transport of files. Specific changes of the time information may be of considerable help in analyzing the user's actions in the computer system. This paper analyzes changes in the time information of files and folders for different operations of the NTFS and attempts to reconstruct the user's actions.

6·25 Special Play Study (6·25 특집극 <최후의 증인> 연구)

  • Song, Chihyuk
    • (The) Research of the performance art and culture
    • /
    • no.42
    • /
    • pp.47-75
    • /
    • 2021
  • This thesis looks into the interpretation of the Korean War and mystery genre in Korea in the 1970s by analyzing the special drama , in which the theme was directly related to the Korean War, airing through MBC in 1979. It begins by finding the change in direction in the 1970s when the world of TV was dictated through the heavy censorship and the memory of the war by the government. It also looks at the intentions of the producer who was taking in the new way and the viewers who also accepted this drama and its reflections. In order to gain some insights into these issues, it compares between the drama "The Last Witness" and the original novel by Seong-jong Kim who holds the same time to see the way in which this is dramatized. The drama, "The Last Witness", was produced with a plan to generate a high-quality special drama which combined both artistry and sense of purpose. Nevertheless, as watching TV became a leisurely past-time during this period, TV dramas become more aggressive and suggestive in order to attract viewers. This ultimately was encored with obstacles due to the regime and the heavy censorship at the time. The genre of special drama that is well known in South Korea, is designed as an art form to satisfy both their unique artistry and its purpose. The conflict is seen between the key elements of the artistic drama crated by the producers and the 'encouraged' elements that often are needed to engage the viewers. Thus, more often than not, special dramas defeat the original intention of national harmony, encouraged by the regime. This is due to the 'novelty' aspect which grows from the effort of bringing enjoyment to viewers whilst also trying to achieve the artistic drama to life. Alongside this, crime element in this drama is designed in a way that visually embodies the process of deduction, becoming a new possibility to secure the reality of the times. However, it was also a paradoxical existence since it was indicated as an example of unrefined culture that lost its original intention. In that way, it is worth to think that detective suspense stories, which were not popular in Korea, influenced viewers as a tv drama series in the 1970s through the various elements that compose the genre. They went through a process of transplantation and acceptance whilst also attempting to satisfy the viewers and their encouraged elements to engage them. As is well known, crime drama in Korea has its own style by mixing anticommunism and detective reasoning. This combination is found in the way in which the genre naturally forms through the elements selected and excluded in the dramatization of "The Last Witness". The point is that the special drama "The Last Witness" can be seen as an intermediate form that shows the tendency of transformation from the detective reasoning form alongside the crime aspects as TV dramas began to include anticommunism messaging and investigation in the 1970s. In conclusion, when the detective reasoning is used as an element in a TV drama, it shows the trust of the public system and it constantly seeks the possibility of circumventing the political interpretation. The memories of the war is seen as a tool that neutralizes the dismal imaginations inscribed on the dark side of society and the system. As a result, "The Last Witness", broadcasted at the end of the Yushin regime in Korea, is a strange result which combines the logic of a special drama and the encouraged characteristics of television dramas. The viewers' desire which is the discussion about the hidden traces from the texts needs to be restored again.