Reference architecture for android applications to support the detection of manipulated evidence

被引:0
|
作者
Pieterse H. [1 ]
Olivier M.S. [2 ]
Van Heerden R.P. [3 ]
机构
[1] Defence, Peace, Safety and Security, Council for Scientific and Industrial Research, Pretoria
[2] Department of Computer Science, University of Pretoria, Pretoria
[3] Meraka Institute, Council for Scientific and Industrial Research, Pretoria
关键词
Android; Digital forensics; Mobile forensics; Reference architecture; Smartphones; Timestamps;
D O I
10.23919/saiee.2016.8531545
中图分类号
学科分类号
摘要
Traces found on Android smartphones form a significant part of digital investigations. A key component of these traces is the date and time, often formed as timestamps. These timestamps allow the examiner to relate the traces found on Android smartphones to some real event that took place. This paper performs exploratory experiments that involve the manipulation of timestamps found in SQLite databases on Android smartphones. Based on observations, specific heuristics are identified that may allow for the identification of manipulated timestamps. To overcome the limitations of these heuristics, a new reference architecture for Android applications is also introduced. The reference architecture provides examiners with a better understanding of Android applications as well as the associated digital evidence. The results presented in the paper show that the suggested techniques to establish the authenticity and accuracy of digital evidence are feasible. © 2015 IEEE.
引用
收藏
页码:92 / 103
页数:11
相关论文
共 50 条
  • [1] REFERENCE ARCHITECTURE FOR ANDROID APPLICATIONS TO SUPPORT THE DETECTION OF MANIPULATED EVIDENCE
    Pieterse, H.
    Olivier, M. S.
    van Heerden, R. P.
    SAIEE AFRICA RESEARCH JOURNAL, 2016, 107 (02): : 92 - 103
  • [2] Reference Framework for Developing Android Applications
    de Andrade, Sidgley Camargo
    Calvi Tait, Tania Fatima
    REVISTA BRASILEIRA DE COMPUTACAO APLICADA, 2012, 4 (01): : 2 - 11
  • [3] Race Detection for Android Applications
    Maiya, Pallavi
    Kanade, Aditya
    Majumdar, Rupak
    ACM SIGPLAN NOTICES, 2014, 49 (06) : 316 - 325
  • [4] Real Time Android Ransomware Detection by Analyzed Android Applications
    Ko, Ju-Seong
    Jo, Jeong-Seok
    Kim, Deuk-Hun
    Choi, Seul-Ki
    Kwak, Jin
    2019 INTERNATIONAL CONFERENCE ON ELECTRONICS, INFORMATION, AND COMMUNICATION (ICEIC), 2019, : 375 - 379
  • [5] A Reference Architecture to support the development of mobile applications based on self-adaptive services
    Affonso, Frank Jose
    Passini, William Filisbino
    Nakagawa, Elisa Yumi
    PERVASIVE AND MOBILE COMPUTING, 2019, 53 : 33 - 48
  • [6] Scalable Race Detection for Android Applications
    Bielik, Pavol
    Raychev, Veselin
    Vechev, Martin
    ACM SIGPLAN NOTICES, 2015, 50 (10) : 332 - 348
  • [7] Detection of Malicious Applications on Android OS
    Di Cerbo, Francesco
    Girardello, Andrea
    Michahelles, Florian
    Voronkova, Svetlana
    COMPUTATIONAL FORENSICS, 2011, 6540 : 138 - +
  • [8] Clone Analysis and Detection in Android Applications
    Niu, Haofei
    Yang, Tianchang
    Niu, Shaozhang
    2016 3RD INTERNATIONAL CONFERENCE ON SYSTEMS AND INFORMATICS (ICSAI), 2016, : 520 - 525
  • [9] Ransomware Detection System for Android Applications
    Alsoghyer, Samah
    Almomani, Iman
    ELECTRONICS, 2019, 8 (08)
  • [10] Detection of Obfuscation Techniques in Android Applications
    Bacci, Alessandro
    Bartoli, Alberto
    Martinelli, Fabio
    Medvet, Eric
    Mercaldo, Francesco
    13TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2018), 2019,