Antony, Athul (2022) How to improve efficiency of Linux Forensics? Masters thesis, Dublin, National College of Ireland.
Preview |
PDF (Master of Science)
Download (1MB) | Preview |
Preview |
PDF (Configuration manual)
Download (1MB) | Preview |
Abstract
The era of digital technology has been rising steadily at a rapid rate. The development of new technologies and software paves way to cybercrimes which has been growing exponentially in recent years. To understand cybercrimes and to prevent it from happening forensic investigation is carried out. Linux forensic triage is in which a forensic investigator collects, assembles, analyses the evidence obtained from Linux machine. Linux operating system provide more secure services than other operating machines and hence investigators need to comb through every piece of information. This is a time consuming and excruciating process. This paper focuses on improving the efficiency of Linux forensics by performing forensic investigation with remote acquisition and collect all relevant information efficiently in much shorter time. The paper shows the forensic investigation carried out by forensic tool and as well as remote acquisition to highlight the differences which helps to show how efficiency has been improved.
Item Type: | Thesis (Masters) |
---|---|
Subjects: | Q Science > QA Mathematics > Electronic computers. Computer science T Technology > T Technology (General) > Information Technology > Electronic computers. Computer science Q Science > QA Mathematics > Computer software T Technology > T Technology (General) > Information Technology > Computer software Q Science > QA Mathematics > Computer software > Computer Security T Technology > T Technology (General) > Information Technology > Computer software > Computer Security |
Divisions: | School of Computing > Master of Science in Cyber Security |
Depositing User: | Clara Chan |
Date Deposited: | 23 Nov 2022 15:31 |
Last Modified: | 23 Nov 2022 15:31 |
URI: | https://norma.ncirl.ie/id/eprint/5928 |
Actions (login required)
View Item |