Nieto Ana, Rios Ruben, Lopez Javier
Network, Information and Computer Security (NICS) Lab, University of Malaga, 29071 Malaga, Spain.
Sensors (Basel). 2018 Feb 7;18(2):492. doi: 10.3390/s18020492.
IoT-Forensics is a novel paradigm for the acquisition of electronic evidence whose operation is conditioned by the peculiarities of the Internet of Things (IoT) context. As a branch of computer forensics, this discipline respects the most basic forensic principles of preservation, traceability, documentation, and authorization. The digital witness approach also promotes such principles in the context of the IoT while allowing personal devices to cooperate in digital investigations by voluntarily providing electronic evidence to the authorities. However, this solution is highly dependent on the willingness of citizens to collaborate and they may be reluctant to do so if the sensitive information within their personal devices is not sufficiently protected when shared with the investigators. In this paper, we provide the digital witness approach with a methodology that enables citizens to share their data with some privacy guarantees. We apply the PRoFIT methodology, originally defined for IoT-Forensics environments, to the digital witness approach in order to unleash its full potential. Finally, we show the feasibility of a PRoFIT-compliant digital witness with two use cases.
物联网取证是一种获取电子证据的全新范式,其操作受物联网环境特性的制约。作为计算机取证的一个分支,该学科遵循保存、可追溯性、文档记录和授权等最基本的取证原则。数字证人方法在物联网环境中也推广了这些原则,同时允许个人设备通过自愿向当局提供电子证据来参与数字调查。然而,这种解决方案高度依赖公民的合作意愿,如果他们个人设备中的敏感信息在与调查人员共享时没有得到充分保护,他们可能会不愿意这样做。在本文中,我们为数字证人方法提供了一种方法,使公民能够在一定隐私保障下共享他们的数据。我们将最初为物联网取证环境定义的PRoFIT方法应用于数字证人方法,以充分发挥其潜力。最后,我们通过两个用例展示了符合PRoFIT的数字证人的可行性。