Digital Forensic Analysis of Hard Disk for Evidence Collection

As the Computers have become a common things ranging from house to the industry, the crimes which are associated with it also have increased tremendously. By performing the digital forensic analysis, it is possible to identify the types of crime committed and the criminal behind the crime. The Compu...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Veröffentlicht in:International journal of cyber-security and digital forensics 2018-04, Vol.7 (2), p.100-110
Hauptverfasser: Meshram, Bandu B, Patil, Dinesh N
Format: Artikel
Sprache:eng
Schlagworte:
Online-Zugang:Volltext
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:As the Computers have become a common things ranging from house to the industry, the crimes which are associated with it also have increased tremendously. By performing the digital forensic analysis, it is possible to identify the types of crime committed and the criminal behind the crime. The Computer hard disk is a main source of evidence against such crimes as it maintains the digital information on it. The evidence against the criminal can be identified by performing the digital forensic investigation of the file system on the hard disk. As certain sensitive or malicious information might be hidden by the suspect in the free space or the slack space of the file system this raises the need to do the forensic investigation of these spaces and to retrieve the sensitive information and metadata associated with it to identify the criminal. This paper proposes an approach to extract the hidden information. A new approach to recover the deleted data is also proposed. The proposed approaches are implemented in a tool.KEYWORDSFile System, Digital Forensic, File Carving, Slack Space, Hidden Data
ISSN:2305-0012
2305-0012
DOI:10.17781/P002372