Android forensics: Automated data collection and reporting from a mobile device

被引:47
|
作者
Grover, Justin [1 ,2 ]
机构
[1] Mitre Corp, Mclean, VA 22102 USA
[2] Rochester Inst Technol, Rochester, NY 14623 USA
关键词
Android; Mobile device; Enterprise user monitoring; Insider threat; Internal investigation;
D O I
10.1016/j.diin.2013.06.002
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In this research, a prototype enterprise monitoring system for Android smartphones was developed to continuously collect many data sets of interest to incident responders, security auditors, proactive security monitors, and forensic investigators. Many of the data sets covered were not found in other available enterprise monitoring tools. The prototype system neither requires root privileges nor the exploiting of the Android architecture for proper operation, thereby increasing interoperability among Android devices and avoiding a spyware classification for the system. An anti-forensics analysis on the system was performed to identify and further strengthen areas vulnerable to tampering. The contributions of this research include the release of the first open-source Android enterprise monitoring solution of its kind, a comprehensive guide of data sets available for collection without elevated privileges, and the introduction of a novel design strategy implementing various Android application components useful for monitoring on the Android platform. (C) 2013 The MITRE Corporation. Published by Elsevier Ltd. All rights reserved.
引用
收藏
页码:S12 / S20
页数:9
相关论文
共 50 条
  • [1] Android Mobile Device Forensics: A Review
    Tayeb, Hussein Farooq
    Varol, Cihan
    2019 7TH INTERNATIONAL SYMPOSIUM ON DIGITAL FORENSICS AND SECURITY (ISDFS), 2019,
  • [2] Evidence Data Collection with ANDROSICS Tool for Android Forensics
    Htun, Naing Linn
    Thwin, Mie Mie Su
    San, Cho Cho
    PROCEEDINGS OF 2018 THE 10TH INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY AND ELECTRICAL ENGINEERING (ICITEE), 2018, : 353 - 358
  • [3] Forensics of location data collected by Google Android mobile devices
    Kroeger, Knut
    Creutzburg, Reiner
    MULTIMEDIA ON MOBILE DEVICES 2012 AND MULTIMEDIA CONTENT ACCESS: ALGORITHMS AND SYSTEMS VI, 2012, 8304
  • [4] Mobile device forensics
    Aljahdali, Asia
    Alsaidi, Nawal
    Alsafri, Maram
    Alsulami, Afnan
    Almutairi, Turkia
    ROMANIAN JOURNAL OF INFORMATION TECHNOLOGY AND AUTOMATIC CONTROL-REVISTA ROMANA DE INFORMATICA SI AUTOMATICA, 2021, 31 (03): : 81 - 96
  • [5] Automated Fault Data Collection, Analysis, and Reporting
    Maragal, Deepak
    Fardanesh, B.
    2009 IEEE POWER & ENERGY SOCIETY GENERAL MEETING, VOLS 1-8, 2009, : 2578 - 2581
  • [6] Impact of Android Phone Rooting on User Data Integrity in Mobile Forensics
    Almehmadi, Tahani
    Batarfi, Omar
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2018, 9 (12) : 561 - 566
  • [7] Impact of Android Phone Rooting on User Data Integrity in Mobile Forensics
    Almehmadi, Tahani
    Batarfi, Omar
    2019 2ND INTERNATIONAL CONFERENCE ON COMPUTER APPLICATIONS & INFORMATION SECURITY (ICCAIS), 2019,
  • [8] DATA EXTRACTION ON MTK-BASED ANDROID MOBILE PHONE FORENSICS
    Kong, Joe
    JOURNAL OF DIGITAL FORENSICS SECURITY AND LAW, 2015, 10 (04) : 31 - 41
  • [9] On the Efficacy of Using Android Debugging Bridge for Android Device Forensics
    Easttom, Chuck
    Sanders, Willie
    2019 IEEE 10TH ANNUAL UBIQUITOUS COMPUTING, ELECTRONICS & MOBILE COMMUNICATION CONFERENCE (UEMCON), 2019, : 730 - 735
  • [10] FORENSICS DATA COLLECTION
    Waggoner, Richard, Jr.
    CHEMICAL & ENGINEERING NEWS, 2016, 94 (07) : 4 - 4