Nadia Asim
Detecting and mitigating anti-forensic techniques: A comprehensive framework for digital investigators
Asim, Nadia; Osamor, Jude; Olajide, Funminiyi; Iwendi, Celestine; Okeke, Njideka
Authors
Jude Osamor
Funminiyi Olajide
Celestine Iwendi
Njideka Okeke
Abstract
The main goal of anti-forensics tools and techniques are to "frustrate" not only the investigators but also the forensic tools used such as Sleuth Kit. Anti-forensics is quite exactly the opposite of Cyber Forensics. These tools affect an investigation negatively making it harder to reach a conclusion. Anti-forensic methods include operations such as deliberate deletion of data by means of overwriting it with new data by using anti-forensic tools, safely wiping out data that cannot be restored ever, altering the file properties to avoid being identified in timeline analysis and many other such methods. While tools such as Autopsy, X-Ways, FTK, EnCase present the ability to detect some anti-forensic techniques if not all, these are not particularly dedicated for anti-forensic technique detection. To summarize, general forensic tools as mentioned above, perform several functions on the data source, of which anti-forensic is just one aspect. Though there exist tools like Timestomp Detector that are made for detecting altered file timestamps. Again, it is specific to only one feature and not many of the anti-forensic techniques. This dissertation aims to develop a dedicated framework that can help detect a few anti-forensic techniques based on user input. This will be integrated within a website format in order to make it easy for the users. This type of prototype could be very useful for investigators working on cases. Instead of going through the entire disk image, that could potentially take hours, investigators could separate any suspicious files and use this detection framework to identify if any of the files have been altered or managed using the anti-forensic techniques.
Presentation Conference Type | Conference Paper (published) |
---|---|
Conference Name | 2025 AI-Driven Smart Healthcare for Society 5.0 |
Start Date | Feb 14, 2025 |
End Date | Feb 15, 2025 |
Acceptance Date | Dec 10, 2024 |
Online Publication Date | Apr 16, 2025 |
Publication Date | Apr 16, 2025 |
Deposit Date | Apr 17, 2025 |
Publicly Available Date | Apr 24, 2025 |
Journal | 2025 AI-Driven Smart Healthcare for Society 5.0 |
Publisher | Institute of Electrical and Electronics Engineers (IEEE) |
Peer Reviewed | Peer Reviewed |
Pages | 66-72 |
ISBN | 9798331536343 |
DOI | https://doi.org/10.1109/ieeeconf64992.2025.10963229 |
Public URL | https://uwe-repository.worktribe.com/output/14318259 |
Files
Detecting and Mitigating Anti-Forensic Techniques: A Comprehensive Framework for Digital Investigators
(458 Kb)
PDF
Licence
http://creativecommons.org/licenses/by/4.0/
Copyright Statement
This is the author's accepted manuscript. The final published version is available here: https://ieeexplore.ieee.org/document/10963229
You might also like
A machine learning-based intrusion detection algorithm for securing bioinformatics pipelines
(2025)
Presentation / Conference Contribution
Ethical implications of WannaCry: A cybersecurity dilemma
(2025)
Presentation / Conference Contribution
The evolution of phishing and future directions: A review
(2025)
Presentation / Conference Contribution
Cyberbiosecurity in healthcare: Securing medical devices from digital and biological threats
(2025)
Presentation / Conference Contribution
Downloadable Citations
About UWE Bristol Research Repository
Administrator e-mail: repository@uwe.ac.uk
This application uses the following open-source libraries:
SheetJS Community Edition
Apache License Version 2.0 (http://www.apache.org/licenses/)
PDF.js
Apache License Version 2.0 (http://www.apache.org/licenses/)
Font Awesome
SIL OFL 1.1 (http://scripts.sil.org/OFL)
MIT License (http://opensource.org/licenses/mit-license.html)
CC BY 3.0 ( http://creativecommons.org/licenses/by/3.0/)
Powered by Worktribe © 2025
Advanced Search