The development of an open-source forensics platform

Show simple item record

dc.contributor.advisor Olivier, Martin S. en
dc.contributor.postgraduate Koen, Renico en
dc.date.accessioned 2013-09-07T17:22:45Z
dc.date.available 2009-06-29 en
dc.date.available 2013-09-07T17:22:45Z
dc.date.created 2009-04-20 en
dc.date.issued 2009-06-29 en
dc.date.submitted 2009-02-17 en
dc.description Dissertation (MSc)--University of Pretoria, 2009. en
dc.description.abstract The rate at which technology evolves by far outpaces the rate at which methods are developed to prevent and prosecute digital crime. This unfortunate situation may potentially allow computer criminals to commit crimes using technologies for which no proper forensic investigative technique currently exists. Such a scenario would ultimately allow criminals to go free due to the lack of evidence to prove their guilt. A solution to this problem would be for law enforcement agencies and governments to invest in the research and development of forensic technologies in an attempt to keep pace with the development of digital technologies. Such an investment could potentially allow new forensic techniques to be developed and released more frequently, thus matching the appearance of new computing devices on the market. A key element in improving the situation is to produce more research results, utilizing less resources, and by performing research more efficiently. This can be achieved by improving the process used to conduct forensic research. One of the problem areas in research and development is the development of prototypes to prove a concept or to test a hypothesis. An in-depth understanding of the extremely technical aspects of operating systems, such as file system structures and memory management, is required to allow forensic researchers to develop prototypes to prove their theories and techniques. The development of such prototypes is an extremely challenging task. It is complicated by the presence of minute details that, if ignored, may have a negative impact on the accuracy of results produced. If some of the complexities experienced in the development of prototypes could simply be removed from the equation, researchers may be able to produce more and better results with less effort, and thus ultimately speed up the forensic research process. This dissertation describes the development of a platform that facilitates the rapid development of forensic prototypes, thus allowing researchers to produce such prototypes utilizing less time and fewer resources. The purpose of the platform is to provide a set of rich features which are likely to be required by developers performing research prototyping. The proposed platform contributes to the development of prototypes using fewer resources and at a faster pace. The development of the platform, as well as various considerations that helped to shape its architecture and design, are the focus points of this dissertation. Topics such as digital forensic investigations, open-source software development, and the development of the proposed forensic platform are discussed. Another purpose of this dissertation is to serve as a proof-of-concept for the developed platform. The development of a selection of forensics prototypes, as well as the results obtained, are also discussed. Copyright en
dc.description.availability unrestricted en
dc.description.department Computer Science en
dc.identifier.citation Koen, R 2009, The development of an open-source forensics platform, MSc dissertation, University of Pretoria, Pretoria, viewed myymmdd < http://hdl.handle.net/2263/29952 > en
dc.identifier.other C184/gm en
dc.identifier.upetdurl http://upetd.up.ac.za/thesis/available/etd-02172009-014722/ en
dc.identifier.uri http://hdl.handle.net/2263/29952
dc.language.iso en
dc.publisher University of Pretoria en_ZA
dc.rights © 2009, University of Pretoria. All rights reserved. The copyright in this work vests in the University of Pretoria. No part of this work may be reproduced or transmitted in any form or by any means, without the prior written permission of the University of Pretoria. en
dc.subject Open-source en
dc.subject Reco platform en
dc.subject Digital forensics en
dc.subject Close-source en
dc.subject UCTD en_US
dc.title The development of an open-source forensics platform en
dc.type Dissertation en


Files in this item

This item appears in the following Collection(s)

Show simple item record