首页> 外文OA文献 >Android forensics: Automated data collection and reporting from a mobile device
【2h】

Android forensics: Automated data collection and reporting from a mobile device

机译:Android取证:自动数据收集和移动设备的报告

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

As Android smartphones gain popularity, industry and government will face increasing pressure to integrate them into their environments. The implementation of these devices on an enterprise can save on costs and add capabilities previously unavailable; however, the organizations that incorporate this technology must be prepared to mitigate the associated risks. These devices can contain vast amounts of personal and work-related data that can impact internal investigations, including (but not limited to) those of policy violations, intellectual property theft, misuse, embezzlement, sabotage, and espionage. Physical access has been the traditional method for retrieving data useful to these investigations from Android devices, with the exception of some limited collection abilities in commercial mobile device management systems and remote enterprise forensics tools. As part of this thesis, a prototype enterprise monitoring system for Android smartphones was developed to continuously collect many of the data sets of interest to incident responders, security auditors, proactive security monitors, and forensic investigators. Many of the data sets covered were not found in other available enterprise monitoring tools. The prototype system neither requires root access privileges nor exploiting weaknesses in the Android architecture for proper operation, thereby increasing interoperability among Android devices and avoiding a spyware classification for the system. An anti-forensics analysis on the system was performed to identify and further strengthen areas vulnerable to tampering. The results of this research include the release of the first open-source Android enterprise monitoring solution of its kind, a comprehensive guide of data sets available for collection without elevated privileges, and the introduction of a novel design strategy implementing various Android application components useful for monitoring on the Android platform.
机译:随着Android智能手机获得人气,行业和政府将面临越来越大的压力,将它们整合到其环境中。在企业上实现这些设备可以节省成本并添加以前不可用的能力;但是,必须准备包含这种技术的组织来减轻相关的风险。这些设备可以包含大量的个人和工作相关数据,可以影响内部调查,包括(但不限于)政策违规,知识产权盗窃,滥用,滥用,破坏和间谍活动。物理访问是检索对来自Android设备的这些调查有用的数据的传统方法,除了商业移动设备管理系统和远程企业取证工具中的一些有限的收集能力。作为本文的一部分,开发了一种用于Android智能手机的原型企业监控系统,以不断收集对事件响应者,安全审计员,主动安全监视器和法医调查人员的许多数据集。在其他可用的企业监控工具中找不到涵盖的许多数据集。原型系统既不需要Root Access权限也不需要利用Android架构中的弱点进行适当的操作,从而增加了Android设备之间的互操作性,并避免了系统的间谍软件分类。对系统进行反对质量分析,以识别和进一步加强易受篡改的地区。本研究的结果包括释放其类型的第一个开源的Android Enterprise监控解决方案,提供了用于收集的数据集的全面指南,而无需提高特权,并引入实施各种Android应用程序组件的新颖设计策略在Android平台上监控。

著录项

  • 作者

    Justin Grover;

  • 作者单位
  • 年度 2013
  • 总页数
  • 原文格式 PDF
  • 正文语种
  • 中图分类

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号