  1. 1. Kontamination av RAM-minne vid användning av IT-forensisk mjukvara

    Kandidat-uppsats, Högskolan i Halmstad/Akademin för informationsteknologi; Högskolan i Halmstad/Akademin för informationsteknologi

    Författare :Joel Franzén; Johan Norryd; [2018]
    Nyckelord :IT-forensik; utvinning; live-respons; RAM-minne; kontamination; virtualisering;

    This report addresses a very specific area of computer forensics and information security. A computer forensic scientict are needed to act in critical situations, therefore the person needs broad knowledge of the physical memory, also known as volatile memory withincomputer forensics.

  2. 2. Digital forensics - Performing virtual primary memory extraction in cloud environments using VMI

    Master-uppsats, Blekinge Tekniska Högskola/Institutionen för datalogi och datorsystemteknik; Blekinge Tekniska Högskola/Institutionen för datalogi och datorsystemteknik

    Författare :David Hjerpe; Henrik Bengtsson; [2018]
    Nyckelord :Memory forensics; Virtual Machine Introspection; Cloud computing; KVM; QEMU;

    Infrastructure as a Service and memory forensics are two subjects which have recently gained increasing amounts of attention. Combining these topics poses new challenges when performing forensic investigations.

  3. 3. Digital Forensics applications towards digitized collections in Cloud : a process approach to gathering evidences for authenticity, integrity and accessibility

    Master-uppsats, Luleå tekniska universitet/Datavetenskap

    Författare :Sanjay Singh; [2017]
    Nyckelord :Cloud; Archiving; Forensics; Preservation;

    The growth of data/information on social media and in large organizations is huge in terms of velocity, volume and variety which is also something being tackled by the large IT companies providing Big Data solutions. The other challenges which are linked to managing the huge pile of data are about ensuring preservation and access of crucial data which has implications in every sector ranging from pharmaceuticals to aerospace and cultural institutions (museums, archives and governmental records).

  4. 4. The differences between SSD and HDD technology regarding forensic investigations

    Kandidat-uppsats, Linnéuniversitetet/Institutionen för datavetenskap (DV)

    Författare :Florian Geier; [2015]
    Nyckelord :SSD; HHD; Data Recovery; Forensics; Flash Memory; Solid State Disk; Hard Disk Drive; TRIM; Garbage collection; Wear leveling; NAND; SandForce;

    In the past years solid state disks have developed drastically and are now gaining increased popularity compared to conventional hard drives. While hard disk drives work predictable, transparent SSD routines work in the background without the user's knowledge.

  5. 5. Forensisk analys av volatilt minne från operativsystemet OS X

    Kandidat-uppsats, Högskolan Dalarna/Datateknik

    Författare :Tobias Ogeskär; [2014]
    Nyckelord :Apple; OS X; Volatile memory; Investigation methods; Apple; OS X; Volatilt minne; Undersökningsmetoder;

    Behovet av att analysera volatilt minne från Macintosh-datorer med OS X har blivit allt mer betydelsefull på grund av att deras datorer blivit allt populärare och att volatil minnesanalysering blivit en allt viktigare del i en IT-forensikers arbete. Anledningen till att volatil minnesanalysering blivit allt viktigare är för att det går att finna viktig information som inte finns lagrad permanent på datorns interna hårddisk.