A Forensically Sound Adversary Model for Mobile Devices
arXiv:1509.06815 · doi:10.1371/journal.pone.0138449
Abstract
In this paper, we propose an adversary model to facilitate forensic investigations of mobile devices (e.g. Android, iOS and Windows smartphones) that can be readily adapted to the latest mobile device technologies. This is essential given the ongoing and rapidly changing nature of mobile device technologies. An integral principle and significant constraint upon forensic practitioners is that of forensic soundness. Our adversary model specifically considers and integrates the constraints of forensic soundness on the adversary, in our case, a forensic practitioner. One construction of the adversary model is an evidence collection and analysis methodology for Android devices. Using the methodology with six popular cloud apps, we were successful in extracting various information of forensic interest in both the external and internal storage of the mobile device.
References in corpus (1)
Cited by in corpus (7)
- Windows Instant Messaging App Forensics: Facebook and Skype as Case Studies
- CloudMe Forensics: A Case of Big-Data Investigation
- Greening Cloud-Enabled Big Data Storage Forensics: Syncany as a Case Study
- Forensics Analysis of Android Mobile VoIP Apps
- Privacy-preserving Medical Treatment System through Nondeterministic Finite Automata
- Mobile Phone Forensics: An Investigative Framework based on User Impulsivity and Secure Collaboration Errors
- Investigating America Online Instant Messaging Application: Data Remnants on Windows 8.1 Client Machine