Volatile Memory Collection and Analysis for Windows Mission-Critical Computer Systems

被引:2
|
作者
Savoldi, Antonio [1 ]
Gubian, Paolo [1 ]
机构
[1] Univ Brescia, Brescia, Italy
关键词
Blurriness; Live Forensic Analysis; Page File Collection; Ram Collection; Volatile Memory Analysis; Volatile Memory Integrity;
D O I
10.4018/jdcf.2009070103
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Most enterprises rely on the continuity of service guaranteed by means of a computer system infrastructure, which can often be based on the Windows operating system family. For such a category of systems, which might be referred to as mission-critical for the relevance of the service supplied, it is indeed fundamental to be able to define which approach could be better to apply when a digital investigation needs to be performed. This is the very goal of this paper: the definition of a forensically sound methodology which can be used to collect the full state of the machine being investigated by avoiding service interruptions. It will be pointed out why the entire volatile memory dump, with the necessary extension which is nowadays missing, is required with the purpose of being able to gather much more evidential data, by illustrating also, at the same time, the limitation and disadvantages of current state of-the-art approaches in performing the collection phase.
引用
收藏
页码:42 / 61
页数:20
相关论文
共 50 条
  • [1] Memory leak analysis of mission-critical middleware
    Carrozza, G.
    Cotroneo, D.
    Natella, R.
    Pecchia, A.
    Russo, S.
    JOURNAL OF SYSTEMS AND SOFTWARE, 2010, 83 (09) : 1556 - 1567
  • [2] Methodology for Resiliency Analysis of Mission-Critical Systems
    Abdelgawad, Mahmoud
    Ray, Indrakshi
    39TH ANNUAL ACM SYMPOSIUM ON APPLIED COMPUTING, SAC 2024, 2024, : 1292 - 1300
  • [3] Key to mission-critical systems
    不详
    AIRCRAFT ENGINEERING AND AEROSPACE TECHNOLOGY, 2005, 77 (04): : 341 - 341
  • [4] Customized OpenVPX for mission-critical systems
    Roberts, B., 2013, Hearst Business Communications (55):
  • [5] Healthcare redefines mission-critical systems
    Database Programming & Design, 9 (11):
  • [6] Defect analysis in mission-critical software systems: a detailed investigation
    Carrozza, Gabriella
    Pietrantuono, Roberto
    Russo, Stefano
    JOURNAL OF SOFTWARE-EVOLUTION AND PROCESS, 2015, 27 (01) : 22 - 49
  • [7] Automated analysis and validation for survivability of distributed mission-critical systems
    College of Computer Science and Technology, Harbin Engineer University, Harbin 150001, China
    不详
    Gaojishu Tongxin, 2009, 6 (572-579): : 572 - 579
  • [8] Designing Cognition-Adaptive Human Computer Interface for Mission-Critical Systems
    Shi, Yu
    Choi, Eric
    Taib, Ronnie
    Chen, Fang
    INFORMATION SYSTEMS DEVELOPMENT: TOWARDS A SERVICE PROVISION SOCIETY, 2009, : 111 - 119
  • [9] Enforcing Timeliness and Safety in Mission-Critical Systems
    Casimiro, Antonio
    Gouveia, Ines
    Rufino, Jose
    RELIABLE SOFTWARE TECHNOLOGIES - ADA-EUROPE 2017, 2017, 10300 : 53 - 69
  • [10] Mission-critical IT systems spared by "green" solution
    不详
    COMMUNICATIONS NEWS, 2000, 37 (02): : 18 - +