Volatile Memory Collection and Analysis for Windows Mission-Critical Computer Systems

被引:2
|
作者
Savoldi, Antonio [1 ]
Gubian, Paolo [1 ]
机构
[1] Univ Brescia, Brescia, Italy
关键词
Blurriness; Live Forensic Analysis; Page File Collection; Ram Collection; Volatile Memory Analysis; Volatile Memory Integrity;
D O I
10.4018/jdcf.2009070103
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Most enterprises rely on the continuity of service guaranteed by means of a computer system infrastructure, which can often be based on the Windows operating system family. For such a category of systems, which might be referred to as mission-critical for the relevance of the service supplied, it is indeed fundamental to be able to define which approach could be better to apply when a digital investigation needs to be performed. This is the very goal of this paper: the definition of a forensically sound methodology which can be used to collect the full state of the machine being investigated by avoiding service interruptions. It will be pointed out why the entire volatile memory dump, with the necessary extension which is nowadays missing, is required with the purpose of being able to gather much more evidential data, by illustrating also, at the same time, the limitation and disadvantages of current state of-the-art approaches in performing the collection phase.
引用
收藏
页码:42 / 61
页数:20
相关论文
共 50 条
  • [21] Data center topologies for mission-critical business systems
    Cocchiara, R.
    Davis, H.
    Kinnaird, D.
    IBM SYSTEMS JOURNAL, 2008, 47 (04) : 695 - 706
  • [22] Contracting for Infrequent Restoration and Recovery of Mission-Critical Systems
    Kim, Sang-Hyun
    Cohen, Morris A.
    Netessine, Serguei
    Veeraraghavan, Senthil
    MANAGEMENT SCIENCE, 2010, 56 (09) : 1551 - 1567
  • [23] Data center topologies for mission-critical business systems
    IBM Global Technology Services, 288-300 Long Meadow Rd., Sterling Forest, NY 10992, United States
    不详
    不详
    IBM Syst J, 2008, 4 (695-706):
  • [24] Lightweight and Seamless Memory Randomization for Mission-Critical Services in a Cloud Platform
    Yun, Joobeom
    Park, Ki-Woong
    Koo, Dongyoung
    Shin, Youngjoo
    ENERGIES, 2020, 13 (06)
  • [25] A Survey of Artificial Intelligence Approaches to Safety and Mission-Critical Systems
    Thames, Chris
    Sun, Yifan
    2024 INTEGRATED COMMUNICATIONS, NAVIGATION AND SURVEILLANCE CONFERENCE, ICNS, 2024,
  • [26] Model-Driven Engineering for Mission-Critical IoT Systems
    Ciccozzi, Federico
    Crnkovic, Ivica
    Di Ruscio, Davide
    Malavolta, Ivano
    Pelliccione, Patrizio
    Spalazzese, Romina
    IEEE SOFTWARE, 2017, 34 (01) : 46 - 53
  • [27] Effective performance metrics for multimedia mission-critical communication systems
    Ali A.
    Ware A.
    Annals of Emerging Technologies in Computing, 2021, 5 (02):
  • [28] Development of Data Integrity Testing Tool for Mission-Critical Systems
    Min, Bup-Ki
    Park, Yong Jun
    Seo, Yongjin
    Kim, Hyeon Soo
    PROCEEDINGS OF THE 2015 INTERNATIONAL CONFERENCE ON TEST, MEASUREMENT AND COMPUTATIONAL METHODS (TMCM 2015), 2015, 26 : 8 - 11
  • [29] Moving toward mission-critical: The migration of strategic and support systems
    Knight, LV
    White, JD
    Steinbach, TA
    INFORMATION TECHNOLOGY AND ORGANIZATIONS: TRENDS, ISSUES, CHALLENGES AND SOLUTIONS, VOLS 1 AND 2, 2003, : 615 - 617
  • [30] Synthesis, Analysis, and Modeling of Large-Scale Mission-Critical Embedded Software Systems
    Selby, Richard W.
    TRUSTWORTHY SOFTWARE DEVELOPMENT PROCESSES, PROCEEDINGS, 2009, 5543 : 3 - +