• Title/Summary/Keyword: Evidence Collection

Search Result 203, Processing Time 0.031 seconds

A Study of Memory Information Collection and Analysis in a view of Digital Forensic in Window System (윈도우 시스템에서 디지털 포렌식 관점의 메모리 정보 수집 및 분석 방법에 관한 고찰)

  • Lee Seok-Hee;Kim Hyun-Sang;Lim JongIn;Lee SangJin
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.16 no.1
    • /
    • pp.87-96
    • /
    • 2006
  • In this paper, we examine general digital evidence collection process which is according to RFC3227 document[l], and establish specific steps for memory information collection. Besides, we include memory dump process to existing digital evidence collection process, and examine privacy information through dumping real user's memory and collecting pagefile which is part of virtual memory system. Especially, we discovered sensitive data which is like password and userID that exist in the half of pagefiles. Moreover, we suggest each analysis technique and computer forensic process for memory information and virtual memory.

Analysis of Collection and Circulation for Multicultual Libraries and Policy Implications: A Case of Ansan Multicultural Small Library (다문화 밀집지역 작은도서관의 장서 대출 현황 분석과 정책적 시사점 - 안산다문화작은도서관 사례연구 -)

  • Eungyung Park
    • Journal of the Korean BIBLIA Society for library and Information Science
    • /
    • v.34 no.4
    • /
    • pp.77-99
    • /
    • 2023
  • This study aims to quantitatively assess collection and circulation data of one small library in an area where multicultural users are concentrated and draw policy implications on improving multicultural services for public libraries. The Ansan Multicultural Small Library was selected for examining the library's collection and circulation usages from 2016 to 2022. The numbers of collection and circulation, collection turnover rates and use factors were calculated by year, language, and KDC subject. The result of this study presents the empirical evidence drawn from users' circulation usage, which can be a basis for leading to valid collection development and multicultural service policies.

A Study on Functional Requirements for the Establishment of Evidence Values of Electronic Records Focused on eDiscovery (전자기록의 증거적 가치 수립을 위한 기능요건에 관한 연구: 미국 eDiscovery 적용을 중심으로)

  • Choi, Kippeum;Lee, Gemma;Oh, Hyo-Jung
    • Journal of the Korean Society for information Management
    • /
    • v.38 no.2
    • /
    • pp.201-226
    • /
    • 2021
  • Discovery's collection was originally paper documents, but with the advent of the digital age, its collection expanded. Resolving the issue of ESI has now become important in litigation. Therefore, this study analyzes the requirements of each domain for electronic records to be recognized as evidence. It also explained the factors that should be considered in record management. In addition, eDiscovery in the United States was selected as an advanced case to utilize records as evidence. This study investigated the Commentary on Legal Holdings: The Trigger & The Process and analyzed which functions must be considered in order for electronic records to be preserved as evidence. To this end, we analyze the functional requirements of the eDiscovery solution. Through this, necessary functional requirements are derived to help implement the system in preparation for eDiscovery.

A study on procedures of search and seize in digital data

  • Kim, Woon Go
    • Journal of the Korea Society of Computer and Information
    • /
    • v.22 no.2
    • /
    • pp.133-139
    • /
    • 2017
  • Today, the activities of individuals and corporations are dependent not only on digital technology but also on the future of society, which is referred to as the fourth industrial revolution. Since the traces that arise from the crimes that occur in the digital society are also inevitably developed into a society that should be found in the digital, the judicial dependence of judging by the digital evidence is inevitably increased in the criminal procedure. On the other hand, considering the fact that many users are using virtual shared computing resources of service providers considering the fact that they are being converted into a cloud computing environment system, searching for evidence in cloud computing resources is not related to crime. The possibility of infringing on the basic rights of the criminal procedure is increased, so that the ability of evidence of digital data which can be used in the criminal procedure is limited. Therefore, considering these two aspects of digital evidence, this point should be fully taken into account in judging the evidence ability in the post-seizure warrant issuance and execution stage as well as the pre-emptive control. There is a view that dictionary control is useless, but it needs to be done with lenient control in order to materialize post-modern control through judging ability of evidence. In other words, more efforts are needed than ever before, including legislation to ensure proper criminal procedures in line with the digital age.

On-demand Evidence Collection of Host Infringement based on the Analysis of Severity levels (위험도 분석에 기반한 On-demand 방식의 호스트 침해 증거 자료 수집 방안)

  • Choi, Yoon-Ho;Park, Jong-Ho;Kim, Sang-Kon;Seo, Seung-U;Kang, Yu;Choi, Jin-Gi;Moon, Ho-Gun;Lee, Myung-Su
    • Proceedings of the IEEK Conference
    • /
    • 2006.06a
    • /
    • pp.33-34
    • /
    • 2006
  • Computer Forensics is a research area which finds the malicious users by collecting and analyzing the intrusion or infringement evidence of the computer crime. Many research about Computer Forensics has been done. But those research have focussed on how to collect the evidence after receiving the damage reports from computer users or network administrators. This paper describes about collecting the evidence of good quality at the time of infringement occurrence by the malicious user. By calculating Infringement severity of observable and protective hosts and referring to this value, we collect the evidence at the time of infringement occurrence to minimize the information modification of the evidence. We can reduce also the amount of logs that we use to analyze the infringement and can minimize the loss of the evidence.

  • PDF

Belief in Evidence-Based Practice, Awareness of Importance and Performance of Nursing Practice Guidelines among Novice Nurses and Preceptors in a Tertiary General Hospital (상급종합병원 신규간호사와 프리셉터 간호사의 근거기반실무에 대한 신념, 간호실무지침에 대한 중요도와 수행도)

  • Seo, Ju Hee;Eun, Young
    • Journal of Korean Clinical Nursing Research
    • /
    • v.29 no.2
    • /
    • pp.149-162
    • /
    • 2023
  • Purpose: This study was to investigate the belief in evidence-based practice, awareness of importance and performance of intravenous infusion and pressure ulcer evidence-based practice guidelines among nurses in a tertiary general hospital. Methods: The subjects of this study were 217 nurses working in a tertiary general hospital. Data collection was performed between February 11 and February 25, 2022. Data analysis was conducted descriptive statistics, t-test, hierarchical regression analysis, and Importance-Performance Analysis. Results: The mean score of belief for evidence-based practice among novice nurses was 3.34 out of 5, while preceptor nurses scored a mean of 3.41 out of 5. There was no significant difference in belief scores between novice nurses and preceptor nurses (t=-1.21, p=.227). The factors influencing the performance of evidence-based practice guidelines for intravenous infusion were belief in evidence-based practice (β=.14, p=.009) and importance of intravenous infusion (β=.51, p<.001), and the factors influencing the performance of evidence-based practice guidelines for pressure ulcer were belief in evidence-based practice (β=.15, p=.002) and importance of pressure ulcer (β=.65, p<.001). Importance-Performance Analysis of the evidence-based practice guidelines of two groups were used to identify common and different items. Conclusion: To improve the performance of evidence-based practice guidelines, it is necessary to enhance the evidence-based practice belief and importance of evidence-based practice guidelines. In particular, evidence-based practice should be provided to improve nursing quality through education on items of low-importance and low-performance and items of high-importance but low-performance guidelines identified through Importance-Performance Analysis.

Research on Effective Scientific Investigation Methods with Regards to Explosion Accidents (폭발사고시 효과적인 과학수사 방법에 관한 연구)

  • Jun, Sang-Gun;Chae, Jong-Min
    • Journal of forensic and investigative science
    • /
    • v.1 no.1
    • /
    • pp.72-87
    • /
    • 2006
  • Accidents and terrorist acts that utilize explosives have a great influence on society and thus require a prompt investigation for the arrest of the culprit. However, such investigations are often met with difficulties due to the vastness of the crime scene, restrictions on approaching the scene, fragility of the evidence, complexity of investigation, and the lack of expertise. In spite of such facts, scientific investigation regarding explosives have not been widely studied in Korea. Therefore, the focus of this research primarily concerns the effective scientific investigation methods in cases of accidents that involve chemical explosives. Although the a systematic investigation method is at the heart of scientific investigation in cases of explosive accidents, it is only at its rudimentary stage. Therefore, in this research, a systematic investigation method is put forth for the 'scene investigation, the documentation of the scene, and the collection and processing of evidence. Further, I have set forth a 'scene investigation check list' the ensure a thorough scene investigation and to promote an exhaustive evidence collection that would guarantee the admissibility of such evidence in court. The above efforts were aimed at simplifying the currently complicated investigation system. 1) In the future, a guidebook that can be generally applied to accidents involving explosives in Korea ught to be produced, a continual systematic education and integrated training excises for investigators ought to be established, laws that require additives in explosives ought to be instituted so that the type, components, and source of explosives can be identified, and lastly, a database that contain information on former explosion accidents, trends, and techniques of criminal activities that involve explosion accidents should be compiled.

  • PDF

Priority Scheduling of Digital Evidence in Forensic (포렌식에서 디지털 증거의 우선순위 스케쥴링)

  • Lee, Jong-Chan;Park, Sang-Joon
    • Journal of the Korea Institute of Information and Communication Engineering
    • /
    • v.17 no.9
    • /
    • pp.2055-2062
    • /
    • 2013
  • Digital evidence which is the new form of evidence to crime makes little difference in value and function with existing evidences. As time goes on, digital evidence will be the important part of the collection and the admissibility of evidence. Usually a digital forensic investigator has to spend a lot of time in order to find clues related to the investigation among the huge amount of data extracted from one or more potential containers of evidence such as computer systems, storage media and devices. Therefore, these evidences need to be ranked and prioritized based on the importance of potential relevant evidence to decrease the investigate time. In this paper we propose a methodology which prioritizes order in which evidences are to be examined in order to help in selecting the right evidence for investigation. The proposed scheme is based on Fuzzy Multi-Criteria Decision Making, in which uncertain parameters such as evidence investigation duration, value of evidence and relation between evidence, and relation between the case and time are used in the decision process using the aggregation function in fuzzy set theory.

Impact Assessment of First Wave of Covid-19 Pandemic on Goods and Services Tax (GST) Revenue Collection & Distribution in India

  • NAIK, Dr. Maithili;HALDANKAR, Gajanan B.
    • Journal of Distribution Science
    • /
    • v.19 no.10
    • /
    • pp.43-54
    • /
    • 2021
  • Purpose: The restrictions posed by the COVID-19 pandemic have affected the normal functioning of the economy. A country like India is facing a lot of concerns in all its sectors especially, in its fiscal system. This paper makes an attempt to examine the impact of COVID-19 first wave on Goods and Service Tax revenue collection and distribution in India and also studies the impact of COVID-19 first wave on the state wise GST revenue of the country. Research Design, Data and Methodology: Our study is based on published GST revenue data. Tools such as Paired Sample t-test, Wilcoxon signed rank test are employed to analyze the data. Results: Our results provide evidence that there is a sharp decline in the GST revenue in the months after the lockdown announcement. The large states show no significance impact of COVID-19 pandemic on GST collection. Whereas, small states like Manipur and Goa show significant difference in GST revenue collection & distribution between the pre and post lockdown period. Conclusion: The outcome of this study will help the policymakers to analyze the extent of the GST revenue loss to the government treasury and will allow them to take appropriate measures in the future.

Study of an Efficient Method for Securing Evidence During the Fire Investigation (화재조사 시 증거물의 효율적인 확보 방안에 관한 연구)

  • Ye, Su-Jo;Choi, Don-Mook
    • Fire Science and Engineering
    • /
    • v.30 no.6
    • /
    • pp.43-47
    • /
    • 2016
  • The recent changes in the judicial system in South Korea, including the stronger trial-centrism and legal market opening, have made fire investigations seek more scientific evidence and structure. The collection of physical evidence is very important to prove the substantial truth of a fire at the court. Without the appropriate physical proof, the credibility of a fire investigation is lost as evidence in a court. Therefore, the fire investigation team needs to carefully handle the fire site and fire initiation evidence because evidence of a fire incident can be destroyed easily by chemical and physical damage. In addition, the fire investigation team also needs to carefully record the collections of any evidence including pictures and their analysis. This study proposed the needs of the procedure manual and guidelines that can provide a step-by-step process of fire investigations in South Korea. This study also helps fire investigation agencies to secure fire-scene evidence to distinctly investigate the facts of fire. The guidelines and manual can eventually improve the ways for the fire investigation processes in South Korea.