13.09.2016 Views

BATTLEFIELD DIGITAL FORENSICS

BDF_Battlefield_Digital_Forensics_final

BDF_Battlefield_Digital_Forensics_final

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Table 1. Statistical Gatherable Intelligence Table, based on Chapter 8.<br />

Statistical Gatherable Intelligence<br />

O.S. Power Connectivity Anti-Forensic<br />

ON OFF ON ON<br />

Laptop - Overall 67.7% 59.2% 74.9% 33.6%<br />

Windows 72,0% 63.1% 75.3% 35.1%<br />

Linux/Unix 68,0% 59.2% 70.2% 32.9%<br />

MacOSX 63,0% 55.4% 79.1% 32.9%<br />

Phone - Overall 83.2% 77.6% 93.8% 42.4%<br />

Android 93.2% 83.2% 96.3% 45.5%<br />

iOS 81.2% 78.1% 93.2% 42.1%<br />

Windows 75.1% 71.6% 91.8% 39.8%<br />

Tablet - Overall 83.0% 76.8% 91.5% 41.9%<br />

Android 91.4% 79.1% 93.1% 43.9%<br />

iOS 80.3% 82.3% 92.3% 42.5%<br />

Windows 77.4% 69.1% 89.1% 39.3%<br />

Desktop 67.7% 57.2% 83.7% 34.8%<br />

Windows 72.0% 63.1% 82.7% 36.3%<br />

Linux/Unix 68.0% 59.2% 79.1% 34.4%<br />

MacOSX 63.0% 49.4% 89.3% 33.6%<br />

GPS 55.8% 52.8% 72.5% 23.3%<br />

Server<br />

Difficult to evaluate. The information is valuable, however these devices are<br />

more effective if used as foothold for the sustaining phase (Chapter 9)<br />

Storage<br />

Wearables 91.2% 85.6% 95.3% 52.7%<br />

IoT 82.8% 81.7% 95.3% 51.8%<br />

6.4 Summarising the Technical Requirements<br />

This paragraph focuses on final requirements that the DFA Infrastructure and the SOF Operator should consider<br />

to optimise the intelligence collection:<br />

<br />

<br />

<br />

<br />

<br />

<br />

Intra-team backup capabilities, based on ad-hoc mobile connections;<br />

Understanding of the basic concept of intelligence gatherable from devices based on the statistical analysis<br />

and experience;<br />

Understanding of the basic functionalities of the vector used;<br />

Understanding of the SIDSS process and the entire digital forensics process;<br />

Understanding the importance of documentation after action, to support the Digital Forensics Analyst.<br />

Knowledge of the basic anti-forensics measures that can be in place, and how to recognise them.<br />

29

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!