• 文献检索
  • 文档翻译
  • 深度研究
  • 学术资讯
  • Suppr Zotero 插件Zotero 插件
  • 邀请有礼
  • 套餐&价格
  • 历史记录
应用&插件
Suppr Zotero 插件Zotero 插件浏览器插件Mac 客户端Windows 客户端微信小程序
定价
高级版会员购买积分包购买API积分包
服务
文献检索文档翻译深度研究API 文档MCP 服务
关于我们
关于 Suppr公司介绍联系我们用户协议隐私条款
关注我们

Suppr 超能文献

核心技术专利:CN118964589B侵权必究
粤ICP备2023148730 号-1Suppr @ 2026

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验

当一无所获可能成为某种证据时:反取证与数字工具痕迹

When finding nothing may be evidence of something: Anti-forensics and digital tool marks.

作者信息

Horsman Graeme, Errickson David

机构信息

Teesside University, Campus Heart, Southfield Rd, Middlesbrough TS1 3BX, United Kingdom.

Cranfield Forensic Institute, Defence Academy of the United Kingdom, Cranfield University, Shrivenham, SN6 8LA, United Kingdom.

出版信息

Sci Justice. 2019 Sep;59(5):565-572. doi: 10.1016/j.scijus.2019.06.004. Epub 2019 Jun 3.

DOI:10.1016/j.scijus.2019.06.004
PMID:31472802
Abstract

There are an abundance of measures available to the standard digital device users which provide the opportunity to act in an anti-forensic manner and conceal any potential digital evidence denoting a criminal act. Whilst there is a lack of empirical evidence which evaluates the scale of this threat to digital forensic investigations leaving the true extent of engagement with such tools unknown, arguably the field should take proactive steps to examine and record the capabilities of these measures. Whilst forensic science has long accepted the concept of toolmark analysis as part of criminal investigations, 'digital tool marks' (DTMs) are a notion rarely acknowledged and considered in digital investigations. DTMs are the traces left behind by a tool or process on a suspect system which can help to determine what malicious behaviour has occurred on a device. This article discusses and champions the need for DTM research in digital forensics highlighting the benefits of doing so.

摘要

对于标准数字设备用户而言,有大量措施可供他们以反取证方式行事,并隐藏任何表明犯罪行为的潜在数字证据。虽然缺乏实证证据来评估这种对数字取证调查的威胁规模,使得使用此类工具的真实程度尚不清楚,但可以说该领域应采取积极措施来检查和记录这些措施的能力。虽然法医学长期以来一直接受工具痕迹分析作为刑事调查的一部分概念,但“数字工具痕迹”(DTMs)在数字调查中很少被承认和考虑。数字工具痕迹是工具或过程在嫌疑系统上留下的痕迹,有助于确定设备上发生了何种恶意行为。本文讨论并倡导在数字取证中开展数字工具痕迹研究的必要性,并强调这样做的好处。

相似文献

1
When finding nothing may be evidence of something: Anti-forensics and digital tool marks.当一无所获可能成为某种证据时:反取证与数字工具痕迹
Sci Justice. 2019 Sep;59(5):565-572. doi: 10.1016/j.scijus.2019.06.004. Epub 2019 Jun 3.
2
Advanced framework for digital forensic technologies and procedures.数字取证技术与程序的先进框架。
J Forensic Sci. 2010 Nov;55(6):1471-80. doi: 10.1111/j.1556-4029.2010.01528.x. Epub 2010 Aug 23.
3
The invisible evidence: Digital forensics as key to solving crimes in the digital age.无形的证据:数字取证是解决数字时代犯罪的关键。
Forensic Sci Int. 2024 Sep;362:112133. doi: 10.1016/j.forsciint.2024.112133. Epub 2024 Jul 15.
4
Digital forensics: an analytical crime scene procedure model (ACSPM).数字取证:一种分析性犯罪现场程序模型 (ACSPM)。
Forensic Sci Int. 2013 Dec 10;233(1-3):244-56. doi: 10.1016/j.forsciint.2013.09.007. Epub 2013 Sep 13.
5
Can computer forensic tools be trusted in digital investigations?在数字调查中,计算机取证工具值得信赖吗?
Sci Justice. 2021 Mar;61(2):198-203. doi: 10.1016/j.scijus.2020.10.002. Epub 2020 Oct 28.
6
Healthcare Data Breaches: Implications for Digital Forensic Readiness.医疗保健数据泄露:对数字取证准备的影响。
J Med Syst. 2018 Nov 28;43(1):7. doi: 10.1007/s10916-018-1123-2.
7
The use of self-organising maps for anomalous behaviour detection in a digital investigation.自组织映射在数字调查中用于异常行为检测的应用。
Forensic Sci Int. 2006 Oct 16;162(1-3):33-7. doi: 10.1016/j.forsciint.2006.06.046. Epub 2006 Jul 27.
8
A metamodel for mobile forensics investigation domain.移动取证调查领域的元模型。
PLoS One. 2017 Apr 26;12(4):e0176223. doi: 10.1371/journal.pone.0176223. eCollection 2017.
9
Forensic Analysis of Tor Browser: A Case Study for Privacy and Anonymity on the Web.Tor浏览器的法证分析:网络隐私与匿名性的案例研究
Forensic Sci Int. 2019 Jun;299:59-73. doi: 10.1016/j.forsciint.2019.03.030. Epub 2019 Mar 26.
10
A Novel Forensic Readiness Framework Applicable to the Drone Forensics Field.一种适用于无人机取证领域的新型取证准备框架。
Comput Intell Neurosci. 2022 Feb 28;2022:8002963. doi: 10.1155/2022/8002963. eCollection 2022.

引用本文的文献

1
Interpol review of digital evidence for 2019-2022.国际刑警组织对2019年至2022年数字证据的审查。
Forensic Sci Int Synerg. 2023 Jan 31;6:100313. doi: 10.1016/j.fsisyn.2022.100313. eCollection 2023.