Forensic challenges in service oriented architectures


Autoria(s): Marrington, Andrew; Branagan, Mark; Smith, Jason
Data(s)

28/09/2007

Resumo

Digital forensics relates to the investigation of a crime or other suspect behaviour using digital evidence. Previous work has dealt with the forensic reconstruction of computer-based activity on single hosts, but with the additional complexity involved with a distributed environment, a Web services-centric approach is required. A framework for this type of forensic examination needs to allow for the reconstruction of transactions spanning multiple hosts, platforms and applications. A tool implementing such an approach could be used by an investigator to identify scenarios of Web services being misused, exploited, or otherwise compromised. This information could be used to redesign Web services in order to mitigate identified risks. This paper explores the requirements of a framework for performing effective forensic examinations in a Web services environment. This framework will be necessary in order to develop forensic tools and techniques for use in service oriented architectures.

Formato

application/pdf

Identificador

http://eprints.qut.edu.au/26905/

Publicador

Australian Homeland Security Research Centre

Relação

http://eprints.qut.edu.au/26905/1/c26905.pdf

http://www.secureaustralia.org/NewsAndEvents/doc/2007/RNSA_Security_Technology_Proceedings_2007.pdf

Marrington, Andrew, Branagan, Mark, & Smith, Jason (2007) Forensic challenges in service oriented architectures. In 2007 Research Network for a Secure Australia : Security Technology Conference, 28 September 2007, Melbourne University, Melbourne, Victoria.

Direitos

Copyright 2007 Australian Homeland Security Research Centre and the authors

Fonte

Information Security Institute

Palavras-Chave #080303 Computer System Security #080505 Web Technologies (excl. Web Search) #service oriented architectures #web services #forensics
Tipo

Conference Paper