Forensics for Korean cell phone
暂无分享,去创建一个
Cell phone forensics to acquire and analyze data in the cellular phone is nowadays being used in a national investigation organization and a private company. In order to collect cellular phone flash memory data, we have two methods. First method is a logical approach which acquires files and directories from the file system of the cell phone flash memory. Secondly, we can get all data from bit-by-bit copy of entire physical memory using a low level access method. In this paper, we describe a forensic tool to acquire cell phone flash memory data using a logical level approach. By our tool, we can get EFS file system and peek memory data with an arbitrary region from some Korean CDMA cell phones.
[1] Wayne Jansen,et al. Guidelines on Cell Phone Forensics , 2007 .
[2] Ing. M. F. Breeuwsma. Forensic imaging of embedded systems using JTAG (boundary-scan) , 2006, Digit. Investig..
[3] Mark Roeloffs,et al. Forensic Data Recovery from Flash Memory , 2007 .
[4] Richard P. Ayers,et al. Cell Phone Forensic Tools: an Overview and Analysis , 2005 .
[5] Sivan Toledo,et al. Algorithms and data structures for flash memories , 2005, CSUR.