CFIM: Toward building new cloud forensics investigation model

6Citations
Citations of this article
8Readers
Mendeley users who have this article in their library.
Get full text

Abstract

In recent times, cybercrime investigation in cloud computing poses complex challenges due to virtualization, volatile data, deleted data, and dynamic and distributing nature of cloud computing. Performing cybercrime investigation in cloud environment is called Cloud Forensics. With the intention of overcoming these challenges, this paper introduces a Cloud Forensics investigation model (CFIM) that can help to investigate cybercrimes in the cloud in forensically sound and timely fashion. The proposed model is an intelligent system that is able to take a snapshot periodically for each virtual machine running in the cloud, sends it automatically to trusted center server (TCS) that is responsible for monitoring and recording the status of the virtual machine and finally, sends it to the forensic server (FS) to perform forensic analysis. This model can increase probability of tracking attackers, determining weaknesses of virtual machines for future use, and also can support in the process of extraction and collection of digital evidence.

Cite

CITATION STYLE

APA

Hemdan, E. E. D., & Manjaiah, D. H. (2018). CFIM: Toward building new cloud forensics investigation model. In Lecture Notes in Networks and Systems (Vol. 7, pp. 545–554). Springer. https://doi.org/10.1007/978-981-10-3812-9_56

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free