Forensic Investigation of P2P Cloud Storage: BitTorrent Sync as a Case Study
arXiv:1707.04715 · doi:10.1016/j.compeleceng.2016.08.020
Abstract
Cloud computing has been regarded as the technology enabler for the Internet of Things (IoT). To ensure the most effective collection of IoT-based evidence, it is vital for forensic practitioners to possess a contemporary understanding of the artefacts from different cloud services. In this paper, we seek to determine the data remnants from the use of BitTorrent Sync version 2.0. Findings from our research using mobile and computer devices running Windows 8.1, Mac OS X Mavericks 10.9.5, Ubuntu 14.04.1 LTS, iOS 7.1.2, and Android KitKat 4.4.4 suggested that artefacts relating to the installation, uninstallation, log-in, log-off, and file synchronisation could be recovered, which are potential sources of IoT forensics. We also present a forensically sound investigation methodology for BitTorrent Sync.
Computers and Electrical Engineering, (2016)
References in corpus (5)
- BitTorrent Sync: First Impressions and Digital Forensic Implications
- Mobile Cloud Forensics: An Analysis of Seven Popular Android Apps
- Network investigation methodology for BitTorrent Sync: A Peer-to-Peer based file synchronisation service
- Leveraging Decentralization to Extend the Digital Evidence Acquisition Window: Case Study on BitTorrent Sync
- BitTorrent Sync: Network Investigation Methodology