Digital Forensic Analysis of Hard Disk for Evidence Collection
As the Computers have become a common things ranging from house to the industry, the crimes which are associated with it also have increased tremendously. By performing the digital forensic analysis, it is possible to identify the types of crime committed and the criminal behind the crime. The Compu...
Gespeichert in:
Veröffentlicht in: | International journal of cyber-security and digital forensics 2018-04, Vol.7 (2), p.100-110 |
---|---|
Hauptverfasser: | , |
Format: | Artikel |
Sprache: | eng |
Schlagworte: | |
Online-Zugang: | Volltext |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | As the Computers have become a common things ranging from house to the industry, the crimes which are associated with it also have increased tremendously. By performing the digital forensic analysis, it is possible to identify the types of crime committed and the criminal behind the crime. The Computer hard disk is a main source of evidence against such crimes as it maintains the digital information on it. The evidence against the criminal can be identified by performing the digital forensic investigation of the file system on the hard disk. As certain sensitive or malicious information might be hidden by the suspect in the free space or the slack space of the file system this raises the need to do the forensic investigation of these spaces and to retrieve the sensitive information and metadata associated with it to identify the criminal. This paper proposes an approach to extract the hidden information. A new approach to recover the deleted data is also proposed. The proposed approaches are implemented in a tool.KEYWORDSFile System, Digital Forensic, File Carving, Slack Space, Hidden Data |
---|---|
ISSN: | 2305-0012 2305-0012 |
DOI: | 10.17781/P002372 |