Development and Evaluation of Guideline Total Support System for Evidence Preservation by Using an Android Phone

The need for digital forensics, which is the technique of preserving evidence and investigating and analyzing electronic records, has been increasing. Society depends greatly on information and communication technologies, and disputes, including legal disputes, occur at various levels between individuals and organizations. The digital forensic operations performed by first responder such as computer center operators at the time of the first recording are not easy. To handle this problem, the Institute of Digital Forensics in Japan developed guidelines to preserve the evidence of electronic records. However, it is not easy for individuals to preserve evidence without a computer aid because of the volume of records demanded by the guidelines. Therefore, to easily transmit text of the guidelines, we developed a total support system named DFGUIDE consisting of a GST (guideline support tool) in PCs for the guideline authors and a BTG (guideline browsing tool) for first responders using an Android phone. This paper deals with the development of the DFGUIDE and the usefulness of the system based on experimental results.

[1]  Jill Slay,et al.  Visualizing Information in Digital Forensics , 2012, IFIP Int. Conf. Digital Forensics.

[2]  Keith J. Jones,et al.  Real Digital Forensics: Computer Security and Incident Response , 2005 .

[3]  Barbara Endicott-Popovsky,et al.  On the Creation of Reliable Digital Evidence , 2012, IFIP Int. Conf. Digital Forensics.

[4]  Tetsutaro Uehara,et al.  Implementing Boot Control for Windows Vista , 2009, IFIP Int. Conf. Digital Forensics.