23.12.2012 Views

Digital Forensics in Small Devices: RFID Tag Investigation

Digital Forensics in Small Devices: RFID Tag Investigation

Digital Forensics in Small Devices: RFID Tag Investigation

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

3.1.7 FORZA – <strong>Digital</strong> <strong>Forensics</strong> <strong>Investigation</strong> Framework that Incorporate<br />

Legal Issues<br />

<strong>Digital</strong> <strong>Forensics</strong> is def<strong>in</strong>ed <strong>in</strong> many different ways and there is no standard def<strong>in</strong>ition<br />

(Politt, 2004, cited <strong>in</strong> Ieong, 2006). Likewise, there are several different digital<br />

forensic <strong>in</strong>vestigation (DFI) procedures mentioned <strong>in</strong> the previous literature. Some<br />

papers discuss the technical aspects <strong>in</strong> potential evidence data acquisition cases while<br />

others focus on the analysis of the acquired data (Brill and Pollitt, 2006, cited <strong>in</strong><br />

Ieong, 2006).<br />

However, different DFI procedures are be<strong>in</strong>g developed <strong>in</strong> order to challenge<br />

various technologies used <strong>in</strong> the compromised systems or the devices under<br />

<strong>in</strong>vestigation (Ieong, 2006). As a result of the complicated technical procedures, the<br />

author (Ieong, 2006, p. S29) mentions that a technical-<strong>in</strong>dependent framework is<br />

required to thwart the technical gap between legal practitioners, <strong>in</strong>vestigators and<br />

<strong>in</strong>formation technologists.<br />

In this paper, “FORZA (FORensics ZAchman framework)”; Ieong (2006)<br />

firstly emphasizes the three basic pr<strong>in</strong>ciples of DFI such as Reconnaissance,<br />

Reliability, and Relevancy (3R; see Figure 3. 6).<br />

Figure 3.6: <strong>Digital</strong> <strong>Forensics</strong> <strong>Investigation</strong> Fundamentals (Ieong, 2006, p. S31)<br />

Reconnaissance is one of the pr<strong>in</strong>ciples of DFI, <strong>in</strong> which a forensic <strong>in</strong>vestigator has<br />

to use different methods, practices and tools <strong>in</strong> order “to collect, recover, decode,<br />

discover, extract, analyse, and convert data that are kept on different storage media<br />

to readable evidence”, whereas Reliability is concerned with the digital evidence that<br />

could be non-repudiated and acceptable to a court of law (Ieong, 2006, p. S30).<br />

53

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!