Forensic process from live examination to acquisition

Assignment Help HR Management
Reference no: EM133974021

Question

Workshop: Digital Discovery with Bootable CDs.

Abstract

Boot-CDs are a flexible and powerful method to assist in the whole forensic process from live examination to acquisition, searching and recovery. Linux was ever since the most popular OS for this purpose, but in some cases Windows-based live-CDs are also useful. In this workshop we present different real-life case scenarios and the corresponding live-boot-solution. Since kernel 2.6 Linux is able to create forensically sound images even of partitions/harddisks with odd sectors. But one has to be aware of a lot of other circumstances which can alter the evidence: mounting filesystems, automatic activation of software RAID arrays, using LVMs or swap-space on the target disk. A lot of Linux-boot-CDs seem to take care of all the critical points, but in fact there are only few well documented tests available. Another problem of the ready-to-download Linux live-CD images is the lack of support for brand new hardware. So a framework to build a custom Linux-live-system with current kernel versions and packages would be really helpful. We present grml, a Debian based live system, developed by the Austrian Debian developer Michael Prokop and the grml team. This system satisfies all the above mentioned initial conditions and much more. Various boot parameters allow to control the behavior of the live system, e.g. the parameter "forensic", which is a shortcut for "nofstab noraid noautoconfig noswap raid=noautodetect readonly ...". Additionally the grml system can be booted from CD/DVD, USB-/firewire-device, remote-adapter (iLO, RSA2, ...), flash-card and PXE. In this workshop you'll learn how to use grml for forensic investigations and how to build your own live system using the grml-live framework. On some brand-new mainboards the grml system might still fail, because the chipset, especially the onboard-raid-chipset is not yet supported by the Linux kernel. For these cases a forensically sound windows-based boot-CD as plan B is needed. So the workshop present a way to build a - forensically sound windows based boot CD using the standard Windows automated installation kit for Windows Vista along with some registry modifications.

What is the research problem (RP) the article addresses?

What is the cause of the discussed RP?

What is/are the impact/s of the RP under discussion?

What are the proposed solutions the article suggests for the RP?

What are the limitations and future works of this research?

Reference no: EM133974021

Questions Cloud

Mobile device vulnerabilities and exploits : The following are examples of mobile device vulnerabilities and exploits.
Tool for e-commerce reporting : Describes a specific e-commerce report, or a tool for e-commerce reporting.
Describes specific e-commerce report : Locate an article that describes a specific e-commerce report, or a tool for e-commerce reporting.
Bob has begun working on risky business plan : Suppose that Bob has begun working on a risky business plan, and decided to regularly send electronic versions of it to his partner Alice
Forensic process from live examination to acquisition : Boot-CDs are a flexible and powerful method to assist in the whole forensic process from live examination to acquisition, searching and recovery.
Describe potential blog that includes information : Describe a potential blog that includes information that is not true.
Role of cybersecurity in information systems : Discuss the role of cybersecurity in information systems. What are the common threats to information security,
Concepts in terms of the types of car models : CEO of Auto Concepts, has begun formulating some concepts in terms of the types of car models to pursue to bring his parent company product line back to life.
Which dashboards would be useful for the investigation : What criticality would you assign to the alert you created? Which Dashboards would be useful for the investigation?

Reviews

Write a Review

HR Management Questions & Answers

  Improve problem solving capabilities within organization

Types of teams as to their effectiveness that will improve problem solving capabilities within organizations.

  Influence tactics help in reducing organizations politics

Explain the different types of influence tactics that will be of a help “if adopted” in reducing the organizational politics.

  Report on citigroup''s hr service level agreement

Human Resources or Human Resource Management deals with HR Service Level Agreement. HR Service Level Agreement is an agreement made between the employer and the employee, which states that the employee would work under any client and sometimes any ti..

  A project report on hrm

Human Resource Management as the name suggests, it is a management discipline which deals with the human i.e. the workforce aspect of organizations. Need and practices of HRM are inevitable in present scenario of extreme competition where "Talent War..

  Hrp: recruitment and selection

Recruitment and Selection is the initial ladder of any Human Resource Planning process and contains an immense significance for any organisation.

  A project report on study of statutory complainces

Statutory compliance and its immense knowledge are crucial to be understood in an organization. It contains all the forms, procedures and acts applicable in a company.

  Operant conditioning and Reinforcement

Operant conditioning is a learning process where behaviour is controlled by its consequences. In this process an individual's behaviour can be modified through the use of positive or negative reinforcement.

  Effectiveness of training programs in achieving customers an

The main motive for conducting this research is to provide broad range of research of the literature and their reviews related to training and development and assisting the employees in providing customers satisfaction.

  A critical analysis of hr processes and practices in fedex c

FedEx is illustrious for its novel HR processes and practices that have greatly accounted for its success.

  Integrating culture and diversity in decision making

People in the organization are known as Google where they share common goals and have common vision.

  Impact of employee attrition on people management in organis

Talent management implies recognizing a person's inherent skills, traits, personality and offering him a matching job.

  Labour dissonance at maruti suzuki india limited: a case stu

This Case Study focuses on various issues related to Labour Unrest at Maruti Suzuki India Limited.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd