Systematic Review: Anti-Forensic Computer Techniques

Uložené v:
Podrobná bibliografia
Názov: Systematic Review: Anti-Forensic Computer Techniques
Autori: Rafael González Arias, Javier Bermejo Higuera, J. Javier Rainer Granados, Juan Ramón Bermejo Higuera, Juan Antonio Sicilia Montalvo
Zdroj: Applied Sciences, Vol 14, Iss 12, p 5302 (2024)
Informácie o vydavateľovi: MDPI AG
Rok vydania: 2024
Zbierka: Directory of Open Access Journals: DOAJ Articles
Predmety: computer anti-forensic, computer forensic, computer security, Technology, Engineering (General). Civil engineering (General), TA1-2040, Biology (General), QH301-705.5, Physics, QC1-999, Chemistry, QD1-999
Popis: The main purpose of anti-forensic computer techniques, in the broadest sense, is to hinder the investigation of a computer attack by eliminating traces and preventing the collection of data contained in a computer system. Nowadays, cyber-attacks are becoming more and more frequent and sophisticated, so it is necessary to understand the techniques used by hackers to be able to carry out a correct forensic analysis leading to the identification of the perpetrators. Despite its importance, this is a poorly represented area in the scientific literature. The disparity of the existing works, together with the small number of articles, makes it challenging to find one’s way around the vast world of computer forensics. This article presents a comprehensive review of the existing scientific literature on anti-forensic techniques, mainly DFIR (digital forensics incident response), organizing the studies according to their subject matter and orientation. It also presents key ideas that contribute to the understanding of this field of forensic science and details the shortcomings identified after reviewing the state of the art.
Druh dokumentu: article in journal/newspaper
Jazyk: English
Relation: https://www.mdpi.com/2076-3417/14/12/5302; https://doaj.org/toc/2076-3417; https://doaj.org/article/940ed4dc329c42aaab4acea8f16ac321
DOI: 10.3390/app14125302
Dostupnosť: https://doi.org/10.3390/app14125302
https://doaj.org/article/940ed4dc329c42aaab4acea8f16ac321
Prístupové číslo: edsbas.412647D8
Databáza: BASE
Popis
Abstrakt:The main purpose of anti-forensic computer techniques, in the broadest sense, is to hinder the investigation of a computer attack by eliminating traces and preventing the collection of data contained in a computer system. Nowadays, cyber-attacks are becoming more and more frequent and sophisticated, so it is necessary to understand the techniques used by hackers to be able to carry out a correct forensic analysis leading to the identification of the perpetrators. Despite its importance, this is a poorly represented area in the scientific literature. The disparity of the existing works, together with the small number of articles, makes it challenging to find one’s way around the vast world of computer forensics. This article presents a comprehensive review of the existing scientific literature on anti-forensic techniques, mainly DFIR (digital forensics incident response), organizing the studies according to their subject matter and orientation. It also presents key ideas that contribute to the understanding of this field of forensic science and details the shortcomings identified after reviewing the state of the art.
DOI:10.3390/app14125302