Using Boot Control to Preserve the Integrity of Evidence

Autor: Yuki Ashino, Ryoichi Sasaki, Tetsutaro Uehara, Keisuke Fujita
Rok vydání: 2008
Předmět:
Zdroj: IFIP — The International Federation for Information Processing ISBN: 9780387849263
IFIP Int. Conf. Digital Forensics
DOI: 10.1007/978-0-387-84927-0_6
Popis: This paper describes Dig-Force2, a system that securely logs and stores evidentiary data about the operation of a personal computer. The integrity of the logged data is guaranteed by using chained hysteresis signatures and a trusted platform module (TPM) that prevents unauthorized programs or tampered programs from executing. Experiments indicate that the Dig-Force2 system is both efficient and reliable.
Databáze: OpenAIRE